CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
51711 | CVE-2011-3799 | Candidate | ReOS 2.0.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by padmin/blocks/vergal.php and certain other files. | Assigned (20110923) | None (candidate not yet proposed) | View | |
51967 | CVE-2011-4055 | Candidate | Buffer overflow in the WebClient ActiveX control in Siemens Tecnomatix FactoryLink 6.6.1 (aka 6.6 SP1), 7.5.217 (aka 7.5 SP2), and 8.0.2.54 allows remote attackers to execute arbitrary code via a long string in a parameter associated with the location URL. | Assigned (20111013) | None (candidate not yet proposed) | View | |
52223 | CVE-2011-4311 | Candidate | ResourceSpace before 4.2.2833 does not properly validate access keys, which allows remote attackers to bypass intended resource restrictions via unspecified vectors. | Assigned (20111104) | None (candidate not yet proposed) | View | |
52479 | CVE-2011-4567 | Candidate | Cross-site scripting (XSS) vulnerability in includes/templates/template_default/templates/tpl_gv_send_default.php in Zen Cart before 1.5 allows remote attackers to inject arbitrary web script or HTML via the message parameter in a gv_send action to index.php, a different vulnerability than CVE-2011-4547. | Assigned (20111128) | None (candidate not yet proposed) | View | |
52735 | CVE-2011-4823 | Candidate | Multiple SQL injection vulnerabilities in Vik Real Estate (com_vikrealestate) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) contract parameter in a results action and (2) imm parameter in a show action to index.php. | Assigned (20111214) | None (candidate not yet proposed) | View |
Page 20933 of 20943, showing 5 records out of 104715 total, starting on record 104661, ending on 104665