CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41233  CVE-2009-3798  Candidate  Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 might allow attackers to execute arbitrary code via unspecified vectors that trigger memory corruption.  Assigned (20091026)  None (candidate not yet proposed)    View
41489  CVE-2009-4054  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-3672. Reason: This candidate is a duplicate of CVE-2009-3672. The duplicate was assigned by the CNA without proper coordination with MITRE. Notes: All CVE users should reference CVE-2009-3672 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20091123)  None (candidate not yet proposed)    View
41745  CVE-2009-4310  Candidate  Stack-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted compressed video data in an IV41 stream in a media file, leading to many loop iterations, as demonstrated by data in an AVI file.  Assigned (20091212)  None (candidate not yet proposed)    View
42001  CVE-2009-4566  Candidate  SQL injection vulnerability in index.php in Zenphoto 1.2.5 allows remote attackers to execute arbitrary SQL commands via the title parameter in a news action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20100104)  None (candidate not yet proposed)    View
42257  CVE-2009-4822  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kasseler CMS 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) do, (2) id, and (3) uname parameters.  Assigned (20100427)  None (candidate not yet proposed)    View

Page 1405 of 20943, showing 5 records out of 104715 total, starting on record 7021, ending on 7025

Actions