CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
43011 | CVE-2010-0427 | Candidate | sudo 1.6.x before 1.6.9p21, when the runas_default option is used, does not properly set group memberships, which allows local users to gain privileges via a sudo command. | Assigned (20100127) | None (candidate not yet proposed) | View | |
43267 | CVE-2010-0683 | Candidate | Unspecified vulnerability in TIBRepoServer5.jar in TIBCO Administrator 5.4.0 through 5.6.0, when JMS transport is used, allows remote authenticated users to execute arbitrary code on all domain nodes via vectors related to leveraging administrative credentials. | Assigned (20100222) | None (candidate not yet proposed) | View | |
43523 | CVE-2010-0939 | Candidate | Visialis ABB Forum 1.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for fpdb/abb.mdb. | Assigned (20100308) | None (candidate not yet proposed) | View | |
43779 | CVE-2010-1195 | Candidate | Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a crafted data:image/svg+xml URI. | Assigned (20100330) | None (candidate not yet proposed) | View | |
44035 | CVE-2010-1451 | Candidate | The TSB I-TLB load implementation in arch/sparc/kernel/tsb.S in the Linux kernel before 2.6.33 on the SPARC platform does not properly obtain the value of a certain _PAGE_EXEC_4U bit and consequently does not properly implement a non-executable stack, which makes it easier for context-dependent attackers to exploit stack-based buffer overflows via a crafted application. | Assigned (20100415) | None (candidate not yet proposed) | View |
Page 913 of 20943, showing 5 records out of 104715 total, starting on record 4561, ending on 4565