CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
47358 | CVE-2010-4774 | Candidate | SQL injection vulnerability in pdf.php in AuraCMS 1.62 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-4804 and CVE-2007-4171. | Assigned (20110323) | None (candidate not yet proposed) | View | |
47614 | CVE-2010-5030 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the lang parameter in a web action. | Assigned (20111102) | None (candidate not yet proposed) | View | |
47870 | CVE-2010-5286 | Candidate | Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. | Assigned (20121126) | None (candidate not yet proposed) | View | |
48126 | CVE-2011-0214 | Candidate | CFNetwork in Apple Safari before 5.0.6 on Windows does not properly handle an untrusted attribute of a system root certificate, which allows remote web servers to bypass intended SSL restrictions via a certificate signed by a blacklisted certification authority. | Assigned (20101223) | None (candidate not yet proposed) | View | |
48382 | CVE-2011-0470 | Candidate | Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle extensions notification, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors. | Assigned (20110114) | None (candidate not yet proposed) | View |
Page 20849 of 20943, showing 5 records out of 104715 total, starting on record 104241, ending on 104245