CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51718  CVE-2011-3806  Candidate  TCExam 11.1.015 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by public/code/tce_page_footer.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
51974  CVE-2011-4062  Candidate  Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX socket.  Assigned (20111015)  None (candidate not yet proposed)    View
52230  CVE-2011-4318  Candidate  Dovecot 2.0.x before 2.0.16, when ssl or starttls is enabled and hostname is used to define the proxy destination, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a valid certificate for a different hostname.  Assigned (20111104)  None (candidate not yet proposed)    View
52486  CVE-2011-4574  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20111129)  None (candidate not yet proposed)    View
52742  CVE-2011-4830  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the com_listing component in Barter Sites component 1.3 for Joomla! allow remote authenticated users to inject arbitrary web script or HTML via the (1) listing_title, (2) description, (3) homeurl (aka Website Address), (4) paystring (aka Payment types accepted), (5) sell_price, (6) shipping_cost, and (7) quantity parameters to index.php.  Assigned (20111214)  None (candidate not yet proposed)    View

Page 550 of 20943, showing 5 records out of 104715 total, starting on record 2746, ending on 2750

Actions