CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49399  CVE-2011-1487  Candidate  The (1) lc, (2) lcfirst, (3) uc, and (4) ucfirst functions in Perl 5.10.x, 5.11.x, and 5.12.x through 5.12.3, and 5.13.x through 5.13.11, do not apply the taint attribute to the return value upon processing tainted input, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.  Assigned (20110321)  None (candidate not yet proposed)    View
49655  CVE-2011-1743  Candidate  Cross-site scripting (XSS) vulnerability in EMC Captiva eInput 2.1.1 before 2.1.1.37 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20110419)  None (candidate not yet proposed)    View
49911  CVE-2011-1999  Candidate  Microsoft Internet Explorer 8 does not properly allocate and access memory, which allows remote attackers to execute arbitrary code via vectors involving a "dereferenced memory address," aka "Select Element Remote Code Execution Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50167  CVE-2011-2255  Candidate  Unspecified vulnerability in the Oracle WebLogic Portal component in Oracle Fusion Middleware 9.2.3.0, 10.0.1.0, 10.2.1.0, and 10.3.2.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.  Assigned (20110602)  None (candidate not yet proposed)    View
50423  CVE-2011-2511  Candidate  Integer overflow in libvirt before 0.9.3 allows remote authenticated users to cause a denial of service (libvirtd crash) and possibly execute arbitrary code via a crafted VirDomainGetVcpus RPC call that triggers memory corruption.  Assigned (20110615)  None (candidate not yet proposed)    View

Page 20278 of 20943, showing 5 records out of 104715 total, starting on record 101386, ending on 101390

Actions