CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47366  CVE-2010-4782  Candidate  Multiple SQL injection vulnerabilities in list.asp in Softwebs Nepal (aka Ananda Raj Pandey) Ananda Real Estate 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) city, (2) state, (3) country, (4) minprice, (5) maxprice, (6) bed, and (7) bath parameters, different vectors than CVE-2006-6807.  Assigned (20110407)  None (candidate not yet proposed)    View
47622  CVE-2010-5038  Candidate  PHP remote file inclusion vulnerability in contact/contact.php in Groone"s Simple Contact Form allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.  Assigned (20111102)  None (candidate not yet proposed)    View
47878  CVE-2010-5294  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the request_filesystem_credentials function in wp-admin/includes/file.php in WordPress before 3.0.2 allow remote servers to inject arbitrary web script or HTML by providing a crafted error message for a (1) FTP or (2) SSH connection attempt.  Assigned (20140120)  None (candidate not yet proposed)    View
48134  CVE-2011-0222  Candidate  WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2011-07-20-1.  Assigned (20101223)  None (candidate not yet proposed)    View
48390  CVE-2011-0478  Candidate  Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle SVG use elements, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."  Assigned (20110114)  None (candidate not yet proposed)    View

Page 551 of 20943, showing 5 records out of 104715 total, starting on record 2751, ending on 2755

Actions