CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41230  CVE-2009-3795  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091026)  None (candidate not yet proposed)    View
41486  CVE-2009-4051  Candidate  Home FTP Server 1.10.1.139 allows remote attackers to cause a denial of service (daemon outage) via multiple invalid SITE INDEX commands.  Assigned (20091123)  None (candidate not yet proposed)    View
41742  CVE-2009-4307  Candidate  The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block with a large FLEX_BG group size (aka s_log_groups_per_flex value).  Assigned (20091212)  None (candidate not yet proposed)    View
41998  CVE-2009-4563  Candidate  Cross-site request forgery (CSRF) vulnerability in zp-core/admin-options.php in Zenphoto 1.2.5 allows remote attackers to hijack the authentication of administrators for requests that change the administrative password via the 0-adminpass and 0-adminpass_2 parameters in a saveoptions action.  Assigned (20100104)  None (candidate not yet proposed)    View
42254  CVE-2009-4819  Candidate  Multiple unrestricted file upload vulnerabilities in upload.php in PHPhotoalbum allow remote attackers to execute arbitrary code by uploading a file with a (1) .php.pgif or (2) .php.pjpeg double extension, then accessing it via a direct request to the file in albums/userpics/.  Assigned (20100427)  None (candidate not yet proposed)    View

Page 1561 of 20943, showing 5 records out of 104715 total, starting on record 7801, ending on 7805

Actions