CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49411  CVE-2011-1499  Candidate  acl.c in Tinyproxy before 1.8.3, when an Allow configuration setting specifies a CIDR block, permits TCP connections from all IP addresses, which makes it easier for remote attackers to hide the origin of web traffic by leveraging the open HTTP proxy server.  Assigned (20110321)  None (candidate not yet proposed)    View
49667  CVE-2011-1755  Candidate  jabberd2 before 2.2.14 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.  Assigned (20110419)  None (candidate not yet proposed)    View
49923  CVE-2011-2011  Candidate  Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that leverages incorrect driver object management, aka "Win32k Use After Free Vulnerability."  Assigned (20110509)  None (candidate not yet proposed)    View
50179  CVE-2011-2267  Candidate  Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.2.0 and 8.3.5.0 allows context-dependent attackers to affect availability via unknown vectors related to Outside In Filters.  Assigned (20110602)  None (candidate not yet proposed)    View
50435  CVE-2011-2523  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20110615)  None (candidate not yet proposed)    View

Page 918 of 20943, showing 5 records out of 104715 total, starting on record 4586, ending on 4590

Actions