CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41472  CVE-2009-4037  Candidate  Multiple SQL injection vulnerabilities in FrontAccounting (FA) before 2.1.7, and 2.2.x before 2.2 RC, allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) admin/db/users_db.inc, and various other .inc and .php files under (2) admin/, (3) dimensions/, (4) gl/, (5) inventory/, (6) manufacturing/, and (7) purchasing/.  Assigned (20091120)  None (candidate not yet proposed)    View
41728  CVE-2009-4293  Candidate  Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.30 through 2.51, when NAT is enabled, allows remote attackers to cause a denial of service (system restart) via crafted GRE packets.  Assigned (20091210)  None (candidate not yet proposed)    View
41984  CVE-2009-4549  Candidate  Stack-based buffer overflow in A2 Media Player Pro 2.51 allows remote attackers to execute arbitrary code via a long string in a (1) .m3u or (2) .m3l playlist file.  Assigned (20100104)  None (candidate not yet proposed)    View
42240  CVE-2009-4805  Candidate  Multiple SQL injection vulnerabilities in EZ-Blog Beta 1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the storyid parameter to public/view.php or (2) the kill parameter to admin/remove.php.  Assigned (20100423)  None (candidate not yet proposed)    View
42496  CVE-2009-5061  Candidate  Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.14 services for Lotus Domino, when Domino Native Authentication is enabled, might allow remote authenticated users to cause a denial of service (daemon crash) by going offline, aka SPR MLZG7UPB9N.  Assigned (20110322)  None (candidate not yet proposed)    View

Page 1219 of 20943, showing 5 records out of 104715 total, starting on record 6091, ending on 6095

Actions