CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
41217 | CVE-2009-3782 | Candidate | Unspecified vulnerability in Userpoints 6.x before 6.x-1.1, a module for Drupal, allows remote authenticated users with "View own userpoints" permissions to read the userpoint data of arbitrary users via unknown attack vectors. | Assigned (20091026) | None (candidate not yet proposed) | View | |
41473 | CVE-2009-4038 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in NCH Software Axon Virtual PBX 2.10 and 2.11 allow remote attackers to inject arbitrary web script or HTML via the (1) onok or (2) oncancel parameter to the logon program. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20091120) | None (candidate not yet proposed) | View | |
41729 | CVE-2009-4294 | Candidate | Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors. | Assigned (20091211) | None (candidate not yet proposed) | View | |
41985 | CVE-2009-4550 | Candidate | SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the func parameter to index.php. | Assigned (20100104) | None (candidate not yet proposed) | View | |
42241 | CVE-2009-4806 | Candidate | admin/save_user.asp in Digital Interchange Document Library 1.0.1 does not require administrative authentication, which allows remote attackers to read or modify the administrator"s credentials via unspecified vectors. NOTE: some of these details are obtained from third party information. | Assigned (20100423) | None (candidate not yet proposed) | View |
Page 173 of 20943, showing 5 records out of 104715 total, starting on record 861, ending on 865