CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47358  CVE-2010-4774  Candidate  SQL injection vulnerability in pdf.php in AuraCMS 1.62 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-4804 and CVE-2007-4171.  Assigned (20110323)  None (candidate not yet proposed)    View
47614  CVE-2010-5030  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the lang parameter in a web action.  Assigned (20111102)  None (candidate not yet proposed)    View
47870  CVE-2010-5286  Candidate  Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.  Assigned (20121126)  None (candidate not yet proposed)    View
48126  CVE-2011-0214  Candidate  CFNetwork in Apple Safari before 5.0.6 on Windows does not properly handle an untrusted attribute of a system root certificate, which allows remote web servers to bypass intended SSL restrictions via a certificate signed by a blacklisted certification authority.  Assigned (20101223)  None (candidate not yet proposed)    View
48382  CVE-2011-0470  Candidate  Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle extensions notification, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.  Assigned (20110114)  None (candidate not yet proposed)    View

Page 20849 of 20943, showing 5 records out of 104715 total, starting on record 104241, ending on 104245

Actions