CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43012  CVE-2010-0428  Candidate  libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.  Assigned (20100127)  None (candidate not yet proposed)    View
43268  CVE-2010-0684  Candidate  Cross-site scripting (XSS) vulnerability in createDestination.action in Apache ActiveMQ before 5.3.1 allows remote authenticated users to inject arbitrary web script or HTML via the JMSDestination parameter in a queue action.  Assigned (20100222)  None (candidate not yet proposed)    View
43524  CVE-2010-0940  Candidate  Cross-site scripting (XSS) vulnerability in guestbook.php in Simple PHP Guestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the action parameter.  Assigned (20100308)  None (candidate not yet proposed)    View
43780  CVE-2010-1196  Candidate  Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM node with a long text value that triggers a heap-based buffer overflow.  Assigned (20100330)  None (candidate not yet proposed)    View
44036  CVE-2010-1452  Candidate  The (1) mod_cache and (2) mod_dav modules in the Apache HTTP Server 2.2.x before 2.2.16 allow remote attackers to cause a denial of service (process crash) via a request that lacks a path.  Assigned (20100415)  None (candidate not yet proposed)    View

Page 387 of 20943, showing 5 records out of 104715 total, starting on record 1931, ending on 1935

Actions