CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43773  CVE-2010-1189  Candidate  MediaWiki before 1.15.2 does not prevent wiki editors from linking to images from other web sites in wiki pages, which allows editors to obtain IP addresses and other information of wiki users by adding a link to an image on an attacker-controlled web site, aka "CSS validation issue."  Assigned (20100330)  None (candidate not yet proposed)    View
44029  CVE-2010-1445  Candidate  Heap-based buffer overflow in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted byte stream in an RTMP session.  Assigned (20100415)  None (candidate not yet proposed)    View
44285  CVE-2010-1701  Candidate  SQL injection vulnerability in browse.html in PHP Video Battle Script allows remote attackers to execute arbitrary SQL commands via the cat parameter.  Assigned (20100504)  None (candidate not yet proposed)    View
44541  CVE-2010-1957  Candidate  Directory traversal vulnerability in the Love Factory (com_lovefactory) component 1.3.4 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.  Assigned (20100518)  None (candidate not yet proposed)    View
44797  CVE-2010-2213  Candidate  Adobe Flash Player before 9.0.280 and 10.x before 10.1.82.76, and Adobe AIR before 2.0.3, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-0209, CVE-2010-2214, and CVE-2010-2216.  Assigned (20100608)  None (candidate not yet proposed)    View

Page 20736 of 20943, showing 5 records out of 104715 total, starting on record 103676, ending on 103680

Actions