CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39653  CVE-2009-2218  Candidate  Multiple PHP remote file inclusion vulnerabilities in phpCollegeExchange 0.1.5c, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the home parameter to (1) i_head.php, (2) i_nav.php, (3) user_new_2.php, or (4) house/myrents.php; or (5) allbooks.php, (6) home.php, or (7) mybooks.php in books/. NOTE: house/myrents.php was also separately reported as a local file inclusion issue.  Assigned (20090625)  None (candidate not yet proposed)    View
39909  CVE-2009-2474  Candidate  neon before 0.28.6, when OpenSSL or GnuTLS is used, does not properly handle a "" character in a domain name in the subject"s Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.  Assigned (20090715)  None (candidate not yet proposed)    View
40165  CVE-2009-2730  Candidate  libgnutls in GnuTLS before 2.8.2 does not properly handle a "" character in a domain name in the subject"s (1) Common Name (CN) or (2) Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.  Assigned (20090810)  None (candidate not yet proposed)    View
40421  CVE-2009-2986  Candidate  Multiple heap-based buffer overflows in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrary code via unspecified vectors.  Assigned (20090827)  None (candidate not yet proposed)    View
40677  CVE-2009-3242  Candidate  Unspecified vulnerability in packet.c in the GSM A RR dissector in Wireshark 1.2.0 and 1.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors related to "an uninitialized dissector handle," which triggers an assertion failure.  Assigned (20090918)  None (candidate not yet proposed)    View

Page 18882 of 20943, showing 5 records out of 104715 total, starting on record 94406, ending on 94410

Actions