CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
41229 | CVE-2009-3794 | Candidate | Heap-based buffer overflow in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via crafted dimensions of JPEG data in an SWF file. | Assigned (20091026) | None (candidate not yet proposed) | View | |
41485 | CVE-2009-4050 | Candidate | Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 allows remote attackers to read arbitrary files via directory traversal sequences in the view parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20091123) | None (candidate not yet proposed) | View | |
41741 | CVE-2009-4306 | Candidate | Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel 2.6.32-git6 and earlier allows local users to cause a denial of service (filesystem corruption) via unknown vectors, a different vulnerability than CVE-2009-4131. | Assigned (20091212) | None (candidate not yet proposed) | View | |
41997 | CVE-2009-4562 | Candidate | Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the from parameter. | Assigned (20100104) | None (candidate not yet proposed) | View | |
42253 | CVE-2009-4818 | Candidate | Unrestricted file upload vulnerability in upload.php in PHPSimplicity Simplicity oF Upload 1.3.2 allows remote attackers to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by .php.gif. | Assigned (20100427) | None (candidate not yet proposed) | View |
Page 1110 of 20943, showing 5 records out of 104715 total, starting on record 5546, ending on 5550