CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46843  CVE-2010-4259  Candidate  Stack-based buffer overflow in FontForge 20100501 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long CHARSET_REGISTRY header in a BDF font file.  Assigned (20101116)  None (candidate not yet proposed)    View
47099  CVE-2010-4515  Candidate  Cross-site scripting (XSS) vulnerability in Citrix Web Interface 5.0, 5.1, and 5.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2007-6477 and CVE-2009-2454.  Assigned (20101209)  None (candidate not yet proposed)    View
47355  CVE-2010-4771  Candidate  SQL injection vulnerability to viewforum.php in S-CMS 2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20110323)  None (candidate not yet proposed)    View
47611  CVE-2010-5027  Candidate  Cross-site scripting (XSS) vulnerability in winners.php in Science Fair In A Box (SFIAB) 2.0.6 and 2.2.0 allows remote attackers to inject arbitrary web script or HTML via the type parameter. NOTE: some of these details are obtained from third party information.  Assigned (20111102)  None (candidate not yet proposed)    View
47867  CVE-2010-5283  Candidate  Cross-site request forgery (CSRF) vulnerability in OpenText ECM (formerly Livelink ECM) 9.7.1 allows remote attackers to hijack the authentication of administrators for requests that change folder and resource permissions.  Assigned (20121126)  None (candidate not yet proposed)    View

Page 20611 of 20943, showing 5 records out of 104715 total, starting on record 103051, ending on 103055

Actions