CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51967  CVE-2011-4055  Candidate  Buffer overflow in the WebClient ActiveX control in Siemens Tecnomatix FactoryLink 6.6.1 (aka 6.6 SP1), 7.5.217 (aka 7.5 SP2), and 8.0.2.54 allows remote attackers to execute arbitrary code via a long string in a parameter associated with the location URL.  Assigned (20111013)  None (candidate not yet proposed)    View
52223  CVE-2011-4311  Candidate  ResourceSpace before 4.2.2833 does not properly validate access keys, which allows remote attackers to bypass intended resource restrictions via unspecified vectors.  Assigned (20111104)  None (candidate not yet proposed)    View
52479  CVE-2011-4567  Candidate  Cross-site scripting (XSS) vulnerability in includes/templates/template_default/templates/tpl_gv_send_default.php in Zen Cart before 1.5 allows remote attackers to inject arbitrary web script or HTML via the message parameter in a gv_send action to index.php, a different vulnerability than CVE-2011-4547.  Assigned (20111128)  None (candidate not yet proposed)    View
52735  CVE-2011-4823  Candidate  Multiple SQL injection vulnerabilities in Vik Real Estate (com_vikrealestate) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) contract parameter in a results action and (2) imm parameter in a show action to index.php.  Assigned (20111214)  None (candidate not yet proposed)    View
52991  CVE-2011-5079  Candidate  Open redirect vulnerability in the Modern FAQ (irfaq) extension 1.1.2 and other versions before 1.1.4 for TYPO3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL, probably in the "return url parameter."  Assigned (20120214)  None (candidate not yet proposed)    View

Page 20897 of 20943, showing 5 records out of 104715 total, starting on record 104481, ending on 104485

Actions