CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
51706 | CVE-2011-3794 | Candidate | Pligg CMS 1.1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by widgets/statistics/init.php and certain other files. | Assigned (20110923) | None (candidate not yet proposed) | View | |
51962 | CVE-2011-4050 | Candidate | Buffer overflow in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) 9.0.0.11200 allows remote attackers to cause a denial of service via a crafted packet to TCP port 12401. | Assigned (20111013) | None (candidate not yet proposed) | View | |
52218 | CVE-2011-4306 | Candidate | Cross-site scripting (XSS) vulnerability in course/editsection.html in Moodle 1.9.x before 1.9.14 allows remote authenticated users to inject arbitrary web script or HTML via crafted data. | Assigned (20111104) | None (candidate not yet proposed) | View | |
52474 | CVE-2011-4562 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) view/admin/log_item.php and (2) view/admin/log_item_details.php in the Redirection plugin 2.2.9 for WordPress allow remote attackers to inject arbitrary web script or HTML via the Referer HTTP header in a request to a post that does not exist. | Assigned (20111128) | None (candidate not yet proposed) | View | |
52730 | CVE-2011-4818 | Candidate | Open redirect vulnerability in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the uisessionid parameter to an unspecified component. | Assigned (20111214) | None (candidate not yet proposed) | View |
Page 20532 of 20943, showing 5 records out of 104715 total, starting on record 102656, ending on 102660