CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
46598 | CVE-2010-4014 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20101020) | None (candidate not yet proposed) | View | |
46854 | CVE-2010-4270 | Candidate | Directory traversal vulnerability in the nBill (com_netinvoice) component before 2.0.9 standard edition, 2.0.10 lite edition, and 1.2_10 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in unspecified vectors related to (1) administrator/components/com_nbill/admin.nbill.php, (2) components/com_nbill/nbill.php, (3) administrator/components/com_netinvoice/admin.netinvoice.php, or (4) components/com_netinvoice/netinvoice.php, as exploited in the wild in November 2010. | Assigned (20101116) | None (candidate not yet proposed) | View | |
47110 | CVE-2010-4526 | Candidate | Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unreachable message to a socket that is already locked by a user, which causes the socket to be freed and triggers list corruption, related to the sctp_wait_for_connect function. | Assigned (20101209) | None (candidate not yet proposed) | View | |
47366 | CVE-2010-4782 | Candidate | Multiple SQL injection vulnerabilities in list.asp in Softwebs Nepal (aka Ananda Raj Pandey) Ananda Real Estate 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) city, (2) state, (3) country, (4) minprice, (5) maxprice, (6) bed, and (7) bath parameters, different vectors than CVE-2006-6807. | Assigned (20110407) | None (candidate not yet proposed) | View | |
47622 | CVE-2010-5038 | Candidate | PHP remote file inclusion vulnerability in contact/contact.php in Groone"s Simple Contact Form allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter. | Assigned (20111102) | None (candidate not yet proposed) | View |
Page 546 of 20943, showing 5 records out of 104715 total, starting on record 2726, ending on 2730