CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
41443 | CVE-2009-4008 | Candidate | Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query. | Assigned (20091119) | None (candidate not yet proposed) | View | |
41699 | CVE-2009-4264 | Candidate | PHP remote file inclusion vulnerability in components/core/connect.php in AROUNDMe 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the language_path parameter. | Assigned (20091210) | None (candidate not yet proposed) | View | |
41955 | CVE-2009-4520 | Candidate | The CCK Comment Reference module 5.x before 5.x-1.2 and 6.x before 6.x-1.3, a module for Drupal, allows remote attackers to bypass intended access restrictions and read comments by using the autocomplete path. | Assigned (20091231) | None (candidate not yet proposed) | View | |
42211 | CVE-2009-4776 | Candidate | Buffer overflow in Hitachi Cosminexus V4 through V8, Processing Kit for XML, and Developer"s Kit for Java, as used in products such as uCosminexus, Electronic Form Workflow, Groupmax, and IBM XL C/C++ Enterprise Edition 7 and 8, allows remote attackers to have an unknown impact via vectors related to the use of GIF image processing APIs by a Java application, and a different issue from CVE-2007-3794. | Assigned (20100421) | None (candidate not yet proposed) | View | |
42467 | CVE-2009-5032 | Candidate | The encrypted e-mail feature in IBM Lotus Notes Traveler before 8.5.0.2 sends unencrypted messages when the feature is used without uploading a Notes ID file, which makes it easier for remote attackers to obtain sensitive information by sniffing the network. | Assigned (20101216) | None (candidate not yet proposed) | View |
Page 18729 of 20943, showing 5 records out of 104715 total, starting on record 93641, ending on 93645