CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39703  CVE-2009-2268  Candidate  Cross-site scripting (XSS) vulnerability in the Cross-Domain Controller (CDC) servlet in Sun Java System Access Manager 6 2005Q1, 7 2005Q4, and 7.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090701)  None (candidate not yet proposed)    View
39959  CVE-2009-2524  Candidate  Integer underflow in the NTLM authentication feature in the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote attackers to cause a denial of service (reboot) via a malformed packet, aka "Local Security Authority Subsystem Service Integer Overflow Vulnerability."  Assigned (20090717)  None (candidate not yet proposed)    View
40215  CVE-2009-2780  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in 68 Classifieds 4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to category.php, view parameter to (2) login.php and (3) viewlisting.php, page parameter to (4) searchresults.php and (5) toplistings.php, and (6) member parameter to viewmember.php.  Assigned (20090817)  None (candidate not yet proposed)    View
40471  CVE-2009-3036  Candidate  Cross-site scripting (XSS) vulnerability in the console in Symantec IM Manager 8.3 and 8.4 before 8.4.13 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090831)  None (candidate not yet proposed)    View
40727  CVE-2009-3292  Candidate  Unspecified vulnerability in PHP before 5.2.11, and 5.3.x before 5.3.1, has unknown impact and attack vectors related to "missing sanity checks around exif processing."  Assigned (20090922)  None (candidate not yet proposed)    View

Page 1889 of 20943, showing 5 records out of 104715 total, starting on record 9441, ending on 9445

Actions