CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41229  CVE-2009-3794  Candidate  Heap-based buffer overflow in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via crafted dimensions of JPEG data in an SWF file.  Assigned (20091026)  None (candidate not yet proposed)    View
41485  CVE-2009-4050  Candidate  Directory traversal vulnerability in get_file.php in phpMyBackupPro 2.1 allows remote attackers to read arbitrary files via directory traversal sequences in the view parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20091123)  None (candidate not yet proposed)    View
41741  CVE-2009-4306  Candidate  Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel 2.6.32-git6 and earlier allows local users to cause a denial of service (filesystem corruption) via unknown vectors, a different vulnerability than CVE-2009-4131.  Assigned (20091212)  None (candidate not yet proposed)    View
41997  CVE-2009-4562  Candidate  Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the from parameter.  Assigned (20100104)  None (candidate not yet proposed)    View
42253  CVE-2009-4818  Candidate  Unrestricted file upload vulnerability in upload.php in PHPSimplicity Simplicity oF Upload 1.3.2 allows remote attackers to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by .php.gif.  Assigned (20100427)  None (candidate not yet proposed)    View

Page 1110 of 20943, showing 5 records out of 104715 total, starting on record 5546, ending on 5550

Actions