CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40934  CVE-2009-3499  Candidate  SQL injection vulnerability in employee.aspx in BPowerHouse BPLawyerCaseDocuments 1.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter.  Assigned (20090930)  None (candidate not yet proposed)    View
41190  CVE-2009-3755  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in phpBMS 0.96 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php and (2) modulesasemyaccount.php; and the PATH_INFO to (3) modules_view.php, (4) tabledefs_options.php, and (5) adminsettings.php in phpbmsmodulesase.  Assigned (20091022)  None (candidate not yet proposed)    View
41446  CVE-2009-4011  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091119)  None (candidate not yet proposed)    View
41702  CVE-2009-4267  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091210)  None (candidate not yet proposed)    View
41958  CVE-2009-4523  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Zainu 1.0 allows remote attackers to inject arbitrary web script or HTML via the searchSongKeyword parameter in a SearchSong action.  Assigned (20091231)  None (candidate not yet proposed)    View

Page 18960 of 20943, showing 5 records out of 104715 total, starting on record 94796, ending on 94800

Actions