CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43017  CVE-2010-0433  Candidate  The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before 0.9.8n, when Kerberos is enabled but Kerberos configuration files cannot be opened, does not check a certain return value, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via SSL cipher negotiation, as demonstrated by a chroot installation of Dovecot or stunnel without Kerberos configuration files inside the chroot.  Assigned (20100127)  None (candidate not yet proposed)    View
43273  CVE-2010-0689  Candidate  The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allows remote attackers to execute arbitrary commands via unspecified vectors.  Assigned (20100222)  None (candidate not yet proposed)    View
43529  CVE-2010-0945  Candidate  SQL injection vulnerability in the HotBrackets Tournament Brackets (com_hotbrackets) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.  Assigned (20100308)  None (candidate not yet proposed)    View
43785  CVE-2010-1201  Candidate  Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.10, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.  Assigned (20100330)  None (candidate not yet proposed)    View
44041  CVE-2010-1457  Candidate  Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 allows local users to read arbitrary files via a (1) -c or (2) -a option, which prints file contents in an error message.  Assigned (20100415)  None (candidate not yet proposed)    View

Page 782 of 20943, showing 5 records out of 104715 total, starting on record 3906, ending on 3910

Actions