CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51706  CVE-2011-3794  Candidate  Pligg CMS 1.1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by widgets/statistics/init.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51962  CVE-2011-4050  Candidate  Buffer overflow in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) 9.0.0.11200 allows remote attackers to cause a denial of service via a crafted packet to TCP port 12401.  Assigned (20111013)  None (candidate not yet proposed)    View
52218  CVE-2011-4306  Candidate  Cross-site scripting (XSS) vulnerability in course/editsection.html in Moodle 1.9.x before 1.9.14 allows remote authenticated users to inject arbitrary web script or HTML via crafted data.  Assigned (20111104)  None (candidate not yet proposed)    View
52474  CVE-2011-4562  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) view/admin/log_item.php and (2) view/admin/log_item_details.php in the Redirection plugin 2.2.9 for WordPress allow remote attackers to inject arbitrary web script or HTML via the Referer HTTP header in a request to a post that does not exist.  Assigned (20111128)  None (candidate not yet proposed)    View
52730  CVE-2011-4818  Candidate  Open redirect vulnerability in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the uisessionid parameter to an unspecified component.  Assigned (20111214)  None (candidate not yet proposed)    View

Page 20532 of 20943, showing 5 records out of 104715 total, starting on record 102656, ending on 102660

Actions