CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42239  CVE-2009-4804  Candidate  Cross-site scripting (XSS) vulnerability in the Calendar Base (cal) extension before 1.1.1 for TYPO3, when Internet Explorer 6 is used, allows remote attackers to inject arbitrary web script or HTML via "search parameters."  Assigned (20100423)  None (candidate not yet proposed)    View
42495  CVE-2009-5060  Candidate  Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.11 services for Lotus Domino might allow remote authenticated users to cause a denial of service (daemon crash) by accessing an entry in a calendar, aka SPR MZHA7SEBJX.  Assigned (20110322)  None (candidate not yet proposed)    View
42751  CVE-2010-0167  Candidate  The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via vectors related to (1) layout/generic/nsBlockFrame.cpp and (2) the _evaluate function in modules/plugin/base/src/nsNPAPIPlugin.cpp.  Assigned (20100106)  None (candidate not yet proposed)    View
43007  CVE-2010-0423  Candidate  gtkimhtml.c in Pidgin before 2.6.6 allows remote attackers to cause a denial of service (CPU consumption and application hang) by sending many smileys in a (1) IM or (2) chat.  Assigned (20100127)  None (candidate not yet proposed)    View
43263  CVE-2010-0679  Candidate  Multiple stack-based buffer overflows in the HyleosChemView.HLChemView ActiveX control (HyleosChemView.ocx) in Hyleos ChemView 1.9.5.1 allow remote attackers to execute arbitrary code via a large number of white space characters in the filename argument to the (1) SaveasMolFile and (2) ReadMolFile methods.  Assigned (20100222)  None (candidate not yet proposed)    View

Page 20315 of 20943, showing 5 records out of 104715 total, starting on record 101571, ending on 101575

Actions