CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43528  CVE-2010-0944  Candidate  Directory traversal vulnerability in the JCollection (com_jcollection) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.  Assigned (20100308)  None (candidate not yet proposed)    View
43784  CVE-2010-1200  Candidate  Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.  Assigned (20100330)  None (candidate not yet proposed)    View
44040  CVE-2010-1456  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-1455. Reason: This candidate is a duplicate of CVE-2010-1455. Notes: All CVE users should reference CVE-2010-1455 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20100415)  None (candidate not yet proposed)    View
44296  CVE-2010-1712  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in base/Comments.php in Webmobo WB News 2.3.3 allow remote attackers to inject arbitrary web script or HTML via the (1) name and possibly (2) message parameters. NOTE: some of these details are obtained from third party information.  Assigned (20100504)  None (candidate not yet proposed)    View
44552  CVE-2010-1968  Candidate  Cross-site request forgery (CSRF) vulnerability in HP Insight Software Installer for Windows before 6.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors, a different vulnerability than CVE-2010-1971.  Assigned (20100519)  None (candidate not yet proposed)    View

Page 703 of 20943, showing 5 records out of 104715 total, starting on record 3511, ending on 3515

Actions