CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40188  CVE-2009-2753  Candidate  Multiple buffer overflows in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3, allow remote attackers to execute arbitrary code via a crafted parameter size.  Assigned (20090812)  None (candidate not yet proposed)    View
40444  CVE-2009-3009  Candidate  Cross-site scripting (XSS) vulnerability in Ruby on Rails 2.x before 2.2.3, and 2.3.x before 2.3.4, allows remote attackers to inject arbitrary web script or HTML by placing malformed Unicode strings into a form helper.  Assigned (20090829)  None (candidate not yet proposed)    View
40700  CVE-2009-3265  Candidate  Cross-site scripting (XSS) vulnerability in Opera 9 and 10 allows remote attackers to inject arbitrary web script or HTML via a (1) RSS or (2) Atom feed, related to the rendering of the application/rss+xml content type as "scripted content." NOTE: the vendor reportedly considers this behavior a "design feature," not a vulnerability.  Assigned (20090918)  None (candidate not yet proposed)    View
40956  CVE-2009-3521  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Visualization Engine (VE) in IBM Tivoli Composite Application Manager for WebSphere (ITCAM) 6.1.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20091001)  None (candidate not yet proposed)    View
41212  CVE-2009-3777  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091023)  None (candidate not yet proposed)    View

Page 20075 of 20943, showing 5 records out of 104715 total, starting on record 100371, ending on 100375

Actions