CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39906  CVE-2009-2471  Candidate  The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted call, related to XPCNativeWrapper.  Assigned (20090715)  None (candidate not yet proposed)    View
40162  CVE-2009-2727  Candidate  Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.3.0, 5.3.7 through 5.3.10, and 6.1.0 through 6.1.3, when the rpc.ttdbserver daemon is enabled in /etc/inetd.conf, allows remote attackers to execute arbitrary code via a long XDR-encoded ASCII string to remote procedure 15.  Assigned (20090810)  None (candidate not yet proposed)    View
40418  CVE-2009-2983  Candidate  Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 allow attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.  Assigned (20090827)  None (candidate not yet proposed)    View
40674  CVE-2009-3239  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-2139, CVE-2009-2140. Reason: This candidate is a duplicate of CVE-2009-2139 and CVE-2009-2140. Notes: All CVE users should reference CVE-2009-2139 and CVE-2009-2140 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20090918)  None (candidate not yet proposed)    View
40930  CVE-2009-3495  Candidate  SQL injection vulnerability in view_mag.php in Vastal I-Tech DVD Zone allows remote attackers to execute arbitrary SQL commands via the mag_id parameter, a different vector than CVE-2008-4465.  Assigned (20090930)  None (candidate not yet proposed)    View

Page 18617 of 20943, showing 5 records out of 104715 total, starting on record 93081, ending on 93085

Actions