CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41482  CVE-2009-4047  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PHD Help Desk 1.43 allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO to area.php; the (2) pagina, (3) sentido, (4) q_registros, and (5) orden parameters to area.php; (6) the q_registros parameter to solic_display.php; (7) the PATH_INFO to area_list.php; (8) the q_registros parameter to area_list.php; (9) the PATH_INFO to atributo.php; the (10) pagina, (11) q_registros, and (12) orden parameters to atributo_list.php; (13) an arbitrary parameter name beginning with "sentido" to atributo_list.php; and (14) the PATH_INFO to caso_insert.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20091123)  None (candidate not yet proposed)    View
41738  CVE-2009-4303  Candidate  Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password hashes and (2) unspecified "secrets" in backup files, which might allow attackers to obtain sensitive information.  Assigned (20091211)  None (candidate not yet proposed)    View
41994  CVE-2009-4559  Candidate  Cross-site scripting (XSS) vulnerability in the Submitted By module 6.x before 6.x-1.3 for Drupal allows remote authenticated users, with "administer content types" privileges, to inject arbitrary web script or HTML via an input string for "submitted by" text.  Assigned (20100104)  None (candidate not yet proposed)    View
42250  CVE-2009-4815  Candidate  Directory traversal vulnerability in Serv-U before 9.2.0.1 allows remote authenticated users to read arbitrary files via unspecified vectors.  Assigned (20100427)  None (candidate not yet proposed)    View
42506  CVE-2009-5071  Candidate  Unspecified vulnerability in Palm Pre WebOS before 1.2.1 has unknown impact and attack vectors related to an "included contact template file."  Assigned (20110419)  None (candidate not yet proposed)    View

Page 1471 of 20943, showing 5 records out of 104715 total, starting on record 7351, ending on 7355

Actions