CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43262  CVE-2010-0678  Candidate  PHP remote file inclusion vulnerability in includes/moderation.php in Katalog Stron Hurricane 1.3.5, and possibly earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the includes_directory parameter.  Assigned (20100222)  None (candidate not yet proposed)    View
43518  CVE-2010-0934  Candidate  The triggers functionality in Perforce Server 2008.1 allows remote authenticated users with super privileges to execute arbitrary operating-system commands by using a "p4 client" command in conjunction with the form-in trigger script.  Assigned (20100305)  None (candidate not yet proposed)    View
43774  CVE-2010-1190  Candidate  thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.  Assigned (20100330)  None (candidate not yet proposed)    View
44030  CVE-2010-1446  Candidate  arch/powerpc/mm/fsl_booke_mmu.c in KGDB in the Linux kernel 2.6.30 and other versions before 2.6.33, when running on PowerPC, does not properly perform a security check for access to a kernel page, which allows local users to overwrite arbitrary kernel memory, related to Fsl booke.  Assigned (20100415)  None (candidate not yet proposed)    View
44286  CVE-2010-1702  Candidate  SQL injection vulnerability in submitticket.php in WHMCompleteSolution (WHMCS) 4.2 allows remote attackers to execute arbitrary SQL commands via the deptid parameter.  Assigned (20100504)  None (candidate not yet proposed)    View

Page 20813 of 20943, showing 5 records out of 104715 total, starting on record 104061, ending on 104065

Actions