CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
40173 | CVE-2009-2738 | Candidate | Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication of users for unspecified requests via unknown vectors. | Assigned (20090811) | None (candidate not yet proposed) | View | |
40429 | CVE-2009-2994 | Candidate | Buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrary code via unspecified vectors. | Assigned (20090827) | None (candidate not yet proposed) | View | |
40685 | CVE-2009-3250 | Candidate | The saveForwardAttachments procedure in the Compose Mail functionality in vtiger CRM 5.0.4 allows remote authenticated users to execute arbitrary code by composing an e-mail message with an attachment filename ending in (1) .php in installations based on certain Apache HTTP Server configurations, (2) .php. on Windows, or (3) .php/ on Linux, and then making a direct request to a certain pathname under storage/. | Assigned (20090918) | None (candidate not yet proposed) | View | |
40941 | CVE-2009-3506 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in CMSphp 0.21 allow remote attackers to inject arbitrary web script or HTML via the (1) cook_user parameter to index.php and the (2) name parameter to modules.php. | Assigned (20091001) | None (candidate not yet proposed) | View | |
41197 | CVE-2009-3762 | Candidate | Unspecified vulnerability in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors. | Assigned (20091023) | None (candidate not yet proposed) | View |
Page 19492 of 20943, showing 5 records out of 104715 total, starting on record 97456, ending on 97460