CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41975  CVE-2009-4540  Candidate  SQL injection vulnerability in page.php in Mini CMS 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20100104)  None (candidate not yet proposed)    View
42231  CVE-2009-4796  Candidate  Multiple SQL injection vulnerabilities in the ExecuteQueries function in private/system/classes/listfactory.class.php in glFusion 1.1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) order and (2) direction parameters to search.php.  Assigned (20100422)  None (candidate not yet proposed)    View
42487  CVE-2009-5052  Candidate  Multiple unspecified vulnerabilities in Smarty before 3.0.0 beta 6 have unknown impact and attack vectors.  Assigned (20110203)  None (candidate not yet proposed)    View
42743  CVE-2010-0159  Candidate  The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.  Assigned (20100106)  None (candidate not yet proposed)    View
42999  CVE-2010-0415  Candidate  The do_pages_move function in mm/migrate.c in the Linux kernel before 2.6.33-rc7 does not validate node values, which allows local users to read arbitrary kernel memory locations, cause a denial of service (OOPS), and possibly have unspecified other impact by specifying a node that is not part of the kernel"s node set.  Assigned (20100127)  None (candidate not yet proposed)    View

Page 20289 of 20943, showing 5 records out of 104715 total, starting on record 101441, ending on 101445

Actions