CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43011  CVE-2010-0427  Candidate  sudo 1.6.x before 1.6.9p21, when the runas_default option is used, does not properly set group memberships, which allows local users to gain privileges via a sudo command.  Assigned (20100127)  None (candidate not yet proposed)    View
43267  CVE-2010-0683  Candidate  Unspecified vulnerability in TIBRepoServer5.jar in TIBCO Administrator 5.4.0 through 5.6.0, when JMS transport is used, allows remote authenticated users to execute arbitrary code on all domain nodes via vectors related to leveraging administrative credentials.  Assigned (20100222)  None (candidate not yet proposed)    View
43523  CVE-2010-0939  Candidate  Visialis ABB Forum 1.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for fpdb/abb.mdb.  Assigned (20100308)  None (candidate not yet proposed)    View
43779  CVE-2010-1195  Candidate  Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a crafted data:image/svg+xml URI.  Assigned (20100330)  None (candidate not yet proposed)    View
44035  CVE-2010-1451  Candidate  The TSB I-TLB load implementation in arch/sparc/kernel/tsb.S in the Linux kernel before 2.6.33 on the SPARC platform does not properly obtain the value of a certain _PAGE_EXEC_4U bit and consequently does not properly implement a non-executable stack, which makes it easier for context-dependent attackers to exploit stack-based buffer overflows via a crafted application.  Assigned (20100415)  None (candidate not yet proposed)    View

Page 913 of 20943, showing 5 records out of 104715 total, starting on record 4561, ending on 4565

Actions