CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40185  CVE-2009-2750  Candidate  IBM WebSphere Service Registry and Repository (WSRR) 6.3.0 before FP2 does not have the intended configuration properties, which allows remote authenticated users to obtain unspecified data access via a property query.  Assigned (20090812)  None (candidate not yet proposed)    View
40441  CVE-2009-3006  Candidate  Maxthon Browser 2.5.3.80 UNICODE allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page.  Assigned (20090828)  None (candidate not yet proposed)    View
40697  CVE-2009-3262  Candidate  Cross-site scripting (XSS) vulnerability in the Self Service UI (SSUI) in IBM Tivoli Identity Manager (ITIM) 5.0.0.5 allows remote authenticated users to inject arbitrary web script or HTML via the last name field in a profile.  Assigned (20090918)  None (candidate not yet proposed)    View
40953  CVE-2009-3518  Candidate  Argument injection vulnerability in the iim: URI handler in IBMIM.exe in IBM Installation Manager 1.3.2 and earlier, as used in IBM Rational Robot and Rational Team Concert, allows remote attackers to load arbitrary DLL files via the -vm option, as demonstrated by a reference to a UNC share pathname.  Assigned (20091001)  None (candidate not yet proposed)    View
41209  CVE-2009-3774  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091023)  None (candidate not yet proposed)    View

Page 20446 of 20943, showing 5 records out of 104715 total, starting on record 102226, ending on 102230

Actions