CVE List

Id CVE No. Status Description Phase Votes Comments Actions
44041  CVE-2010-1457  Candidate  Tools/gdomap.c in gdomap in GNUstep Base before 1.20.0 allows local users to read arbitrary files via a (1) -c or (2) -a option, which prints file contents in an error message.  Assigned (20100415)  None (candidate not yet proposed)    View
44297  CVE-2010-1713  Candidate  SQL injection vulnerability in modules.php in PostNuke 0.764 allows remote attackers to execute arbitrary SQL commands via the sid parameter in a News article modload action.  Assigned (20100504)  None (candidate not yet proposed)    View
44553  CVE-2010-1969  Candidate  Cross-site scripting (XSS) vulnerability in HP Virtual Connect Enterprise Manager for Windows before 6.1 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20100519)  None (candidate not yet proposed)    View
44809  CVE-2010-2225  Candidate  Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function.  Assigned (20100609)  None (candidate not yet proposed)    View
45065  CVE-2010-2481  Candidate  The TIFFExtractData macro in LibTIFF before 3.9.4 does not properly handle unknown tag types in TIFF directory entries, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF file.  Assigned (20100628)  None (candidate not yet proposed)    View

Page 790 of 20943, showing 5 records out of 104715 total, starting on record 3946, ending on 3950

Actions