CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39667  CVE-2009-2232  Candidate  SQL injection vulnerability in image.php in Softbiz Banner Ad Management Script allows remote attackers to execute arbitrary SQL commands via the size_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20090626)  None (candidate not yet proposed)    View
39923  CVE-2009-2488  Candidate  Unspecified vulnerability in the NFSv4 module in the kernel in Sun Solaris 10, and OpenSolaris snv_102 through snv_119, allows local users to cause a denial of service (client panic) via vectors involving "file operations."  Assigned (20090716)  None (candidate not yet proposed)    View
40179  CVE-2009-2744  Candidate  Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.27 allows remote attackers to cause a denial of service via unknown vectors, related to "an error in fixpacks 6.1.0.23 and 6.1.0.25."  Assigned (20090812)  None (candidate not yet proposed)    View
40435  CVE-2009-3000  Candidate  The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows remote attackers to cause a denial of service (panic) via unspecified web-server traffic that triggers a NULL pointer dereference in the nl7c_http_log function, related to "improper http response handling."  Assigned (20090828)  None (candidate not yet proposed)    View
40691  CVE-2009-3256  Candidate  Cross-site scripting (XSS) vulnerability in include/ajax/blogInfo.php in LiveStreet 0.2 allows remote attackers to inject arbitrary web script or HTML via the URI, as demonstrated by a SCRIPT element in an arbitrary parameter such as the asd parameter.  Assigned (20090918)  None (candidate not yet proposed)    View

Page 19962 of 20943, showing 5 records out of 104715 total, starting on record 99806, ending on 99810

Actions