CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39673  CVE-2009-2238  Candidate  Unrestricted file upload vulnerability in includes/shared_scripts/wysiwyg_editor/assetmanager/assetmanager.asp in DMXReady Registration Manager 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in assets/webblogmanager.  Assigned (20090627)  None (candidate not yet proposed)    View
39929  CVE-2009-2494  Candidate  The Active Template Library (ATL) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows remote attackers to execute arbitrary code via vectors related to erroneous free operations after reading a variant from a stream and deleting this variant, aka "ATL Object Type Mismatch Vulnerability."  Assigned (20090717)  None (candidate not yet proposed)    View
40185  CVE-2009-2750  Candidate  IBM WebSphere Service Registry and Repository (WSRR) 6.3.0 before FP2 does not have the intended configuration properties, which allows remote authenticated users to obtain unspecified data access via a property query.  Assigned (20090812)  None (candidate not yet proposed)    View
40441  CVE-2009-3006  Candidate  Maxthon Browser 2.5.3.80 UNICODE allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page.  Assigned (20090828)  None (candidate not yet proposed)    View
40697  CVE-2009-3262  Candidate  Cross-site scripting (XSS) vulnerability in the Self Service UI (SSUI) in IBM Tivoli Identity Manager (ITIM) 5.0.0.5 allows remote authenticated users to inject arbitrary web script or HTML via the last name field in a profile.  Assigned (20090918)  None (candidate not yet proposed)    View

Page 20425 of 20943, showing 5 records out of 104715 total, starting on record 102121, ending on 102125

Actions