CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
43012 | CVE-2010-0428 | Candidate | libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors. | Assigned (20100127) | None (candidate not yet proposed) | View | |
43268 | CVE-2010-0684 | Candidate | Cross-site scripting (XSS) vulnerability in createDestination.action in Apache ActiveMQ before 5.3.1 allows remote authenticated users to inject arbitrary web script or HTML via the JMSDestination parameter in a queue action. | Assigned (20100222) | None (candidate not yet proposed) | View | |
43524 | CVE-2010-0940 | Candidate | Cross-site scripting (XSS) vulnerability in guestbook.php in Simple PHP Guestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the action parameter. | Assigned (20100308) | None (candidate not yet proposed) | View | |
43780 | CVE-2010-1196 | Candidate | Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM node with a long text value that triggers a heap-based buffer overflow. | Assigned (20100330) | None (candidate not yet proposed) | View | |
44036 | CVE-2010-1452 | Candidate | The (1) mod_cache and (2) mod_dav modules in the Apache HTTP Server 2.2.x before 2.2.16 allow remote attackers to cause a denial of service (process crash) via a request that lacks a path. | Assigned (20100415) | None (candidate not yet proposed) | View |
Page 387 of 20943, showing 5 records out of 104715 total, starting on record 1931, ending on 1935