CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42999  CVE-2010-0415  Candidate  The do_pages_move function in mm/migrate.c in the Linux kernel before 2.6.33-rc7 does not validate node values, which allows local users to read arbitrary kernel memory locations, cause a denial of service (OOPS), and possibly have unspecified other impact by specifying a node that is not part of the kernel"s node set.  Assigned (20100127)  None (candidate not yet proposed)    View
43255  CVE-2010-0671  Candidate  SQL injection vulnerability in index.php in KR MEDIA Pogodny CMS allows remote attackers to execute arbitrary SQL commands via the id parameter in a niusy action.  Assigned (20100222)  None (candidate not yet proposed)    View
43511  CVE-2010-0927  Candidate  Cross-site scripting (XSS) vulnerability in help/readme.nsf/Header in the Help component in IBM Lotus Domino 7.x before 7.0.4 and 8.x before 8.0.2 allows remote attackers to inject arbitrary web script or HTML via the BaseTarget parameter in an OpenPage action. NOTE: this may overlap CVE-2010-0920.  Assigned (20100305)  None (candidate not yet proposed)    View
43767  CVE-2010-1183  Candidate  Certain patch-installation scripts in Oracle Solaris allow local users to append data to arbitrary files via a symlink attack on the /tmp/CLEANUP temporary file, related to use of Update Manager.  Assigned (20100329)  None (candidate not yet proposed)    View
44023  CVE-2010-1439  Candidate  yum-rhn-plugin in Red Hat Network Client Tools (aka rhn-client-tools) on Red Hat Enterprise Linux (RHEL) 5 and Fedora uses world-readable permissions for the /var/spool/up2date/loginAuth.pkl file, which allows local users to access the Red Hat Network profile, and possibly prevent future security updates, by leveraging authentication data from this file.  Assigned (20100415)  None (candidate not yet proposed)    View

Page 20273 of 20943, showing 5 records out of 104715 total, starting on record 101361, ending on 101365

Actions