CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
41720 | CVE-2009-4285 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20091210) | None (candidate not yet proposed) | View | |
41976 | CVE-2009-4541 | Candidate | Multiple PHP remote file inclusion vulnerabilities in IsolSoft Support Center 2.5 allow remote attackers to execute arbitrary PHP code via a URL in the lang parameter to (1) newticket.php or (2) rempass.php, or a URL in the lang parameter in an adduser action to (3) index.php. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences. | Assigned (20100104) | None (candidate not yet proposed) | View | |
42232 | CVE-2009-4797 | Candidate | SQL injection vulnerability in browse.php in JobHut 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the pk parameter. | Assigned (20100422) | None (candidate not yet proposed) | View | |
42488 | CVE-2009-5053 | Candidate | Unspecified vulnerability in Smarty before 3.0.0 beta 6 allows remote attackers to execute arbitrary PHP code by injecting this code into a cache file. | Assigned (20110203) | None (candidate not yet proposed) | View | |
42744 | CVE-2010-0160 | Candidate | The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors. | Assigned (20100106) | None (candidate not yet proposed) | View |
Page 20364 of 20943, showing 5 records out of 104715 total, starting on record 101816, ending on 101820