CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45061  CVE-2010-2477  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the paste.httpexceptions implementation in Paste before 1.7.4 allow remote attackers to inject arbitrary web script or HTML via vectors involving a 404 status code, related to (1) paste.urlparser.StaticURLParser, (2) paste.urlparser.PkgResourcesParser, (3) paste.urlmap.URLMap, and (4) HTTPNotFound.  Assigned (20100628)  None (candidate not yet proposed)    View
45317  CVE-2010-2733  Candidate  Cross-site scripting (XSS) vulnerability in the Web Monitor in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "UAG XSS Allows EOP Vulnerability."  Assigned (20100714)  None (candidate not yet proposed)    View
45573  CVE-2010-2989  Candidate  nessusd_www_server.nbin in the Nessus Web Server plugin 1.2.4 for Nessus allows remote attackers to obtain sensitive information via a request to the /feed method, which reveals the version in a response.  Assigned (20100809)  None (candidate not yet proposed)    View
45829  CVE-2010-3245  Candidate  The automated-backup functionality in Blackboard Transact Suite (formerly Blackboard Commerce Suite) stores the (1) database username and (2) database password in cleartext in (a) script and (b) batch (.bat) files, which allows local users to obtain sensitive information by reading a file.  Assigned (20100907)  None (candidate not yet proposed)    View
46085  CVE-2010-3501  Candidate  Unspecified vulnerability in the OID component in Oracle Fusion Middleware 10.1.2.3, 10.1.4.3, and 11.1.1.2.0 allows remote attackers to affect availability via unknown vectors.  Assigned (20100920)  None (candidate not yet proposed)    View

Page 464 of 20943, showing 5 records out of 104715 total, starting on record 2316, ending on 2320

Actions