CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44285  CVE-2010-1701  Candidate  SQL injection vulnerability in browse.html in PHP Video Battle Script allows remote attackers to execute arbitrary SQL commands via the cat parameter.  Assigned (20100504)  None (candidate not yet proposed)    View
44541  CVE-2010-1957  Candidate  Directory traversal vulnerability in the Love Factory (com_lovefactory) component 1.3.4 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.  Assigned (20100518)  None (candidate not yet proposed)    View
44797  CVE-2010-2213  Candidate  Adobe Flash Player before 9.0.280 and 10.x before 10.1.82.76, and Adobe AIR before 2.0.3, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-0209, CVE-2010-2214, and CVE-2010-2216.  Assigned (20100608)  None (candidate not yet proposed)    View
45053  CVE-2010-2469  Candidate  The Linear eMerge 50 and 5000 uses a default password of eMerge for the IEIeMerge account, which makes it easier for remote attackers to obtain Video Recorder data by establishing a session to the device.  Assigned (20100625)  None (candidate not yet proposed)    View
45309  CVE-2010-2725  Candidate  BarnOwl before 1.6.2 does not check the return code of calls to the (1) ZPending and (2) ZReceiveNotice functions in libzephyr, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.  Assigned (20100714)  None (candidate not yet proposed)    View

Page 20768 of 20943, showing 5 records out of 104715 total, starting on record 103836, ending on 103840

Actions