CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40173  CVE-2009-2738  Candidate  Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication of users for unspecified requests via unknown vectors.  Assigned (20090811)  None (candidate not yet proposed)    View
40429  CVE-2009-2994  Candidate  Buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrary code via unspecified vectors.  Assigned (20090827)  None (candidate not yet proposed)    View
40685  CVE-2009-3250  Candidate  The saveForwardAttachments procedure in the Compose Mail functionality in vtiger CRM 5.0.4 allows remote authenticated users to execute arbitrary code by composing an e-mail message with an attachment filename ending in (1) .php in installations based on certain Apache HTTP Server configurations, (2) .php. on Windows, or (3) .php/ on Linux, and then making a direct request to a certain pathname under storage/.  Assigned (20090918)  None (candidate not yet proposed)    View
40941  CVE-2009-3506  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in CMSphp 0.21 allow remote attackers to inject arbitrary web script or HTML via the (1) cook_user parameter to index.php and the (2) name parameter to modules.php.  Assigned (20091001)  None (candidate not yet proposed)    View
41197  CVE-2009-3762  Candidate  Unspecified vulnerability in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.  Assigned (20091023)  None (candidate not yet proposed)    View

Page 19500 of 20943, showing 5 records out of 104715 total, starting on record 97496, ending on 97500

Actions