CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
40182 | CVE-2009-2747 | Candidate | The Java Naming and Directory Interface (JNDI) implementation in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.39, 6.1 before 6.1.0.29, and 7.0 before 7.0.0.7 does not properly restrict access to UserRegistry object methods, which allows remote attackers to obtain sensitive information via a crafted method call. | Assigned (20090812) | None (candidate not yet proposed) | View | |
40438 | CVE-2009-3003 | Candidate | Microsoft Internet Explorer 6 through 8 allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page. | Assigned (20090828) | None (candidate not yet proposed) | View | |
40694 | CVE-2009-3259 | Candidate | Multiple SQL injection vulnerabilities in RASH Quote Management System (RQMS) 1.2.2 allow remote attackers to execute arbitrary SQL commands via (1) the search parameter in a search action, (2) the quote parameter in a quote addition, or (3) a User_Name cookie in unspecified administrative actions. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20090918) | None (candidate not yet proposed) | View | |
40950 | CVE-2009-3515 | Candidate | Directory traversal vulnerability in dnet_admin/index.php in d.net CMS allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the type parameter. | Assigned (20091001) | None (candidate not yet proposed) | View | |
41206 | CVE-2009-3771 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20091023) | None (candidate not yet proposed) | View |
Page 20208 of 20943, showing 5 records out of 104715 total, starting on record 101036, ending on 101040