CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40679  CVE-2009-3244  Candidate  Heap-based buffer overflow in the SwDir.dll ActiveX control in Adobe Shockwave Player 11.5.1.601 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long PlayerVersion property value.  Assigned (20090918)  None (candidate not yet proposed)    View
40935  CVE-2009-3500  Candidate  Multiple SQL injection vulnerabilities in BPowerHouse BPGames 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) cat_id parameter to main.php and (2) game_id parameter to game.php.  Assigned (20090930)  None (candidate not yet proposed)    View
41191  CVE-2009-3756  Candidate  phpBMS 0.96 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php, (2) header.php, (3) the show action in advancedsearch.php, and (4) choicelist.php, which reveals the installation path in an error message.  Assigned (20091022)  None (candidate not yet proposed)    View
41447  CVE-2009-4012  Candidate  Multiple integer overflows in LibThai before 0.1.13 might allow context-dependent attackers to execute arbitrary code via long strings that trigger heap-based buffer overflows, related to (1) thbrk/thbrk.c and (2) thwbrk/thwbrk.c. NOTE: some of these details are obtained from third party information.  Assigned (20091119)  None (candidate not yet proposed)    View
41703  CVE-2009-4268  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091210)  None (candidate not yet proposed)    View

Page 19037 of 20943, showing 5 records out of 104715 total, starting on record 95181, ending on 95185

Actions