CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47607  CVE-2010-5023  Candidate  SQL injection vulnerability in index.asp in Digital Interchange Calendar 5.8.5 allows remote attackers to execute arbitrary SQL commands via the intDivisionID parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47863  CVE-2010-5279  Candidate  article.php in Virtual War (aka VWar) 1.6.1 R2 allows remote attackers to cause a denial of service (memory consumption) via a large integer in the ratearticleselect parameter.  Assigned (20121008)  None (candidate not yet proposed)    View
48119  CVE-2011-0207  Candidate  The MobileMe component in Apple Mac OS X before 10.6.8 uses a cleartext HTTP session for the Mail application to read e-mail aliases, which allows remote attackers to obtain potentially sensitive alias information by sniffing the network.  Assigned (20101223)  None (candidate not yet proposed)    View
48375  CVE-2011-0463  Candidate  The ocfs2_prepare_page_for_write function in fs/ocfs2/aops.c in the Oracle Cluster File System 2 (OCFS2) subsystem in the Linux kernel before 2.6.39-rc1 does not properly handle holes that cross page boundaries, which allows local users to obtain potentially sensitive information from uninitialized disk locations by reading a file.  Assigned (20110114)  None (candidate not yet proposed)    View
48631  CVE-2011-0719  Candidate  Samba 3.x before 3.3.15, 3.4.x before 3.4.12, and 3.5.x before 3.5.7 does not perform range checks for file descriptors before use of the FD_SET macro, which allows remote attackers to cause a denial of service (stack memory corruption, and infinite loop or daemon crash) by opening a large number of files, related to (1) Winbind or (2) smbd.  Assigned (20110131)  None (candidate not yet proposed)    View

Page 20288 of 20943, showing 5 records out of 104715 total, starting on record 101436, ending on 101440

Actions