CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
51965 | CVE-2011-4053 | Candidate | Untrusted search path vulnerability in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) before 9.0.0.11291 allows local users to gain privileges via a Trojan horse DLL in the current working directory. | Assigned (20111013) | None (candidate not yet proposed) | View | |
52221 | CVE-2011-4309 | Candidate | Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote attackers to bypass intended access restrictions and perform global searches by leveraging the guest role and making a direct request to a URL. | Assigned (20111104) | None (candidate not yet proposed) | View | |
52477 | CVE-2011-4565 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.5.1.a, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the (1) text parameter to include/formdhtmltextarea_preview.php or (2) img BBCODE tag within the message parameter to pmlite.php (aka Private Message). NOTE: some of these details are obtained from third party information. | Assigned (20111128) | None (candidate not yet proposed) | View | |
52733 | CVE-2011-4821 | Candidate | Directory traversal vulnerability in the TFTP server in D-Link DIR-601 Wireless N150 Home Router with firmware 1.02NA allows remote attackers to read arbitrary files via unspecified vectors. | Assigned (20111214) | None (candidate not yet proposed) | View | |
52989 | CVE-2011-5077 | Candidate | Unrestricted file upload vulnerability in attachement.php in HDWiki 5.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in image directory. | Assigned (20120207) | None (candidate not yet proposed) | View |
Page 20774 of 20943, showing 5 records out of 104715 total, starting on record 103866, ending on 103870