CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43518  CVE-2010-0934  Candidate  The triggers functionality in Perforce Server 2008.1 allows remote authenticated users with super privileges to execute arbitrary operating-system commands by using a "p4 client" command in conjunction with the form-in trigger script.  Assigned (20100305)  None (candidate not yet proposed)    View
43774  CVE-2010-1190  Candidate  thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.  Assigned (20100330)  None (candidate not yet proposed)    View
44030  CVE-2010-1446  Candidate  arch/powerpc/mm/fsl_booke_mmu.c in KGDB in the Linux kernel 2.6.30 and other versions before 2.6.33, when running on PowerPC, does not properly perform a security check for access to a kernel page, which allows local users to overwrite arbitrary kernel memory, related to Fsl booke.  Assigned (20100415)  None (candidate not yet proposed)    View
44286  CVE-2010-1702  Candidate  SQL injection vulnerability in submitticket.php in WHMCompleteSolution (WHMCS) 4.2 allows remote attackers to execute arbitrary SQL commands via the deptid parameter.  Assigned (20100504)  None (candidate not yet proposed)    View
44542  CVE-2010-1958  Candidate  Cross-site scripting (XSS) vulnerability in the FileField module 5.x before 5.x-2.5 and 6.x before 6.x-3.4 for Drupal allows remote authenticated users, with create or edit permissions and "Path to File" or "URL to File" display enabled, to inject arbitrary web script or HTML via the file name (filepath parameter).  Assigned (20100519)  None (candidate not yet proposed)    View

Page 20847 of 20943, showing 5 records out of 104715 total, starting on record 104231, ending on 104235

Actions