CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44805  CVE-2010-2221  Candidate  Multiple buffer overflows in the iSNS implementation in isns.c in (1) Linux SCSI target framework (aka tgt or scsi-target-utils) before 1.0.6, (2) iSCSI Enterprise Target (aka iscsitarget or IET) 1.4.20.1 and earlier, and (3) Generic SCSI Target Subsystem for Linux (aka SCST or iscsi-scst) 1.0.1.1 and earlier allow remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via (a) a long iSCSI Name string in an SCN message or (b) an invalid PDU.  Assigned (20100609)  None (candidate not yet proposed)    View
45061  CVE-2010-2477  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the paste.httpexceptions implementation in Paste before 1.7.4 allow remote attackers to inject arbitrary web script or HTML via vectors involving a 404 status code, related to (1) paste.urlparser.StaticURLParser, (2) paste.urlparser.PkgResourcesParser, (3) paste.urlmap.URLMap, and (4) HTTPNotFound.  Assigned (20100628)  None (candidate not yet proposed)    View
45317  CVE-2010-2733  Candidate  Cross-site scripting (XSS) vulnerability in the Web Monitor in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "UAG XSS Allows EOP Vulnerability."  Assigned (20100714)  None (candidate not yet proposed)    View
45573  CVE-2010-2989  Candidate  nessusd_www_server.nbin in the Nessus Web Server plugin 1.2.4 for Nessus allows remote attackers to obtain sensitive information via a request to the /feed method, which reveals the version in a response.  Assigned (20100809)  None (candidate not yet proposed)    View
45829  CVE-2010-3245  Candidate  The automated-backup functionality in Blackboard Transact Suite (formerly Blackboard Commerce Suite) stores the (1) database username and (2) database password in cleartext in (a) script and (b) batch (.bat) files, which allows local users to obtain sensitive information by reading a file.  Assigned (20100907)  None (candidate not yet proposed)    View

Page 485 of 20943, showing 5 records out of 104715 total, starting on record 2421, ending on 2425

Actions