CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51711  CVE-2011-3799  Candidate  ReOS 2.0.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by padmin/blocks/vergal.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51967  CVE-2011-4055  Candidate  Buffer overflow in the WebClient ActiveX control in Siemens Tecnomatix FactoryLink 6.6.1 (aka 6.6 SP1), 7.5.217 (aka 7.5 SP2), and 8.0.2.54 allows remote attackers to execute arbitrary code via a long string in a parameter associated with the location URL.  Assigned (20111013)  None (candidate not yet proposed)    View
52223  CVE-2011-4311  Candidate  ResourceSpace before 4.2.2833 does not properly validate access keys, which allows remote attackers to bypass intended resource restrictions via unspecified vectors.  Assigned (20111104)  None (candidate not yet proposed)    View
52479  CVE-2011-4567  Candidate  Cross-site scripting (XSS) vulnerability in includes/templates/template_default/templates/tpl_gv_send_default.php in Zen Cart before 1.5 allows remote attackers to inject arbitrary web script or HTML via the message parameter in a gv_send action to index.php, a different vulnerability than CVE-2011-4547.  Assigned (20111128)  None (candidate not yet proposed)    View
52735  CVE-2011-4823  Candidate  Multiple SQL injection vulnerabilities in Vik Real Estate (com_vikrealestate) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) contract parameter in a results action and (2) imm parameter in a show action to index.php.  Assigned (20111214)  None (candidate not yet proposed)    View

Page 20933 of 20943, showing 5 records out of 104715 total, starting on record 104661, ending on 104665

Actions