CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41487  CVE-2009-4052  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the JSF Widget Library Runtime in IBM Rational Application Developer for WebSphere Software before 7.0.0.10 and Rational Software Architect before 7.0.0.10 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) the JSF Tree Control and (2) the JavaScript Resource Servlet.  Assigned (20091123)  None (candidate not yet proposed)    View
41743  CVE-2009-4308  Candidate  The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted read-only filesystem that lacks a journal.  Assigned (20091212)  None (candidate not yet proposed)    View
41999  CVE-2009-4564  Candidate  SQL injection vulnerability in index.php in Zenphoto 1.2.5, when the ZenPage plugin is enabled, allows remote attackers to execute arbitrary SQL commands via the category parameter, related to a URI under news/category/.  Assigned (20100104)  None (candidate not yet proposed)    View
42255  CVE-2009-4820  Candidate  Angelo-Emlak 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for veribaze/angelo.mdb.  Assigned (20100427)  None (candidate not yet proposed)    View
42511  CVE-2009-5076  Candidate  CRE Loaded before 6.2.14, and possibly other versions before 6.3.x, allows remote attackers to bypass authentication and gain administrator privileges via a request with (1) login.php or (2) password_forgotten.php appended as the PATH_INFO, which bypasses a check that uses PHP_SELF, which is not properly handled by (a) includes/application_top.php and (b) admin/includes/application_top.php, as exploited in the wild in 2009.  Assigned (20110607)  None (candidate not yet proposed)    View

Page 1271 of 20943, showing 5 records out of 104715 total, starting on record 6351, ending on 6355

Actions