CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51965  CVE-2011-4053  Candidate  Untrusted search path vulnerability in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) before 9.0.0.11291 allows local users to gain privileges via a Trojan horse DLL in the current working directory.  Assigned (20111013)  None (candidate not yet proposed)    View
52221  CVE-2011-4309  Candidate  Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to bypass intended access restrictions and perform global searches by leveraging the guest role and making a direct request to a URL.  Assigned (20111104)  None (candidate not yet proposed)    View
52477  CVE-2011-4565  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.5.1.a, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to include/formdhtmltextarea_preview.php or (2) img BBCODE tag within the message parameter to pmlite.php (aka Private Message). NOTE: some of these details are obtained from third party information.  Assigned (20111128)  None (candidate not yet proposed)    View
52733  CVE-2011-4821  Candidate  Directory traversal vulnerability in the TFTP server in D-Link DIR-601 Wireless N150 Home Router with firmware 1.02NA allows remote attackers to read arbitrary files via unspecified vectors.  Assigned (20111214)  None (candidate not yet proposed)    View
52989  CVE-2011-5077  Candidate  Unrestricted file upload vulnerability in attachement.php in HDWiki 5.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in image directory.  Assigned (20120207)  None (candidate not yet proposed)    View

Page 20774 of 20943, showing 5 records out of 104715 total, starting on record 103866, ending on 103870

Actions