CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
41230 | CVE-2009-3795 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20091026) | None (candidate not yet proposed) | View | |
41486 | CVE-2009-4051 | Candidate | Home FTP Server 1.10.1.139 allows remote attackers to cause a denial of service (daemon outage) via multiple invalid SITE INDEX commands. | Assigned (20091123) | None (candidate not yet proposed) | View | |
41742 | CVE-2009-4307 | Candidate | The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block with a large FLEX_BG group size (aka s_log_groups_per_flex value). | Assigned (20091212) | None (candidate not yet proposed) | View | |
41998 | CVE-2009-4563 | Candidate | Cross-site request forgery (CSRF) vulnerability in zp-core/admin-options.php in Zenphoto 1.2.5 allows remote attackers to hijack the authentication of administrators for requests that change the administrative password via the 0-adminpass and 0-adminpass_2 parameters in a saveoptions action. | Assigned (20100104) | None (candidate not yet proposed) | View | |
42254 | CVE-2009-4819 | Candidate | Multiple unrestricted file upload vulnerabilities in upload.php in PHPhotoalbum allow remote attackers to execute arbitrary code by uploading a file with a (1) .php.pgif or (2) .php.pjpeg double extension, then accessing it via a direct request to the file in albums/userpics/. | Assigned (20100427) | None (candidate not yet proposed) | View |
Page 1561 of 20943, showing 5 records out of 104715 total, starting on record 7801, ending on 7805