CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41483  CVE-2009-4048  Candidate  Dxmsoft XM Easy Personal FTP Server 5.8.0 allows remote authenticated users to cause a denial of service (daemon outage) via an APPE command to one socket in conjunction with a DELE command to a second socket.  Assigned (20091123)  None (candidate not yet proposed)    View
41739  CVE-2009-4304  Candidate  Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.  Assigned (20091211)  None (candidate not yet proposed)    View
41995  CVE-2009-4560  Candidate  SQL injection vulnerability in profile.php in WebLeague 2.2.0 allows remote attackers to execute arbitrary SQL commands via the name parameter.  Assigned (20100104)  None (candidate not yet proposed)    View
42251  CVE-2009-4816  Candidate  Directory traversal vulnerability in api/download_checker.php in MegaLab The Uploader 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.  Assigned (20100427)  None (candidate not yet proposed)    View
42507  CVE-2009-5072  Candidate  Memory leak in the ldap_explode_dn function in IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.61 (aka 6.0.0.8-TIV-ITDS-IF0003) allows remote authenticated users to cause a denial of service (memory consumption) via an empty string argument.  Assigned (20110420)  None (candidate not yet proposed)    View

Page 1550 of 20943, showing 5 records out of 104715 total, starting on record 7746, ending on 7750

Actions