CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40182  CVE-2009-2747  Candidate  The Java Naming and Directory Interface (JNDI) implementation in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.39, 6.1 before 6.1.0.29, and 7.0 before 7.0.0.7 does not properly restrict access to UserRegistry object methods, which allows remote attackers to obtain sensitive information via a crafted method call.  Assigned (20090812)  None (candidate not yet proposed)    View
40438  CVE-2009-3003  Candidate  Microsoft Internet Explorer 6 through 8 allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page.  Assigned (20090828)  None (candidate not yet proposed)    View
40694  CVE-2009-3259  Candidate  Multiple SQL injection vulnerabilities in RASH Quote Management System (RQMS) 1.2.2 allow remote attackers to execute arbitrary SQL commands via (1) the search parameter in a search action, (2) the quote parameter in a quote addition, or (3) a User_Name cookie in unspecified administrative actions. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20090918)  None (candidate not yet proposed)    View
40950  CVE-2009-3515  Candidate  Directory traversal vulnerability in dnet_admin/index.php in d.net CMS allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the type parameter.  Assigned (20091001)  None (candidate not yet proposed)    View
41206  CVE-2009-3771  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091023)  None (candidate not yet proposed)    View

Page 20208 of 20943, showing 5 records out of 104715 total, starting on record 101036, ending on 101040

Actions