CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41217  CVE-2009-3782  Candidate  Unspecified vulnerability in Userpoints 6.x before 6.x-1.1, a module for Drupal, allows remote authenticated users with "View own userpoints" permissions to read the userpoint data of arbitrary users via unknown attack vectors.  Assigned (20091026)  None (candidate not yet proposed)    View
41473  CVE-2009-4038  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in NCH Software Axon Virtual PBX 2.10 and 2.11 allow remote attackers to inject arbitrary web script or HTML via the (1) onok or (2) oncancel parameter to the logon program. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20091120)  None (candidate not yet proposed)    View
41729  CVE-2009-4294  Candidate  Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.  Assigned (20091211)  None (candidate not yet proposed)    View
41985  CVE-2009-4550  Candidate  SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the func parameter to index.php.  Assigned (20100104)  None (candidate not yet proposed)    View
42241  CVE-2009-4806  Candidate  admin/save_user.asp in Digital Interchange Document Library 1.0.1 does not require administrative authentication, which allows remote attackers to read or modify the administrator"s credentials via unspecified vectors. NOTE: some of these details are obtained from third party information.  Assigned (20100423)  None (candidate not yet proposed)    View

Page 173 of 20943, showing 5 records out of 104715 total, starting on record 861, ending on 865

Actions