CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40186  CVE-2009-2751  Candidate  IBM WebSphere Commerce 7.0 uses the same cryptographic key for session attributes and merchant data encryption, which has unspecified impact and remote attack vectors.  Assigned (20090812)  None (candidate not yet proposed)    View
40442  CVE-2009-3007  Candidate  Mozilla Firefox 3.5.1 and SeaMonkey 1.1.17, and Flock 2.5.1, allow context-dependent attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary file: URL after a victim has visited any file: URL, as demonstrated by a visit to a file: document written by the attacker.  Assigned (20090828)  None (candidate not yet proposed)    View
40698  CVE-2009-3263  Candidate  Cross-site scripting (XSS) vulnerability in Google Chrome 2.x and 3.x before 3.0.195.21 allows remote attackers to inject arbitrary web script or HTML via a (1) RSS or (2) Atom feed, related to the rendering of the application/rss+xml content type as XML "active content."  Assigned (20090918)  None (candidate not yet proposed)    View
40954  CVE-2009-3519  Candidate  Multiple memory leaks in the IP module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_109, allow local users to cause a denial of service (memory consumption) via vectors related to (1) M_DATA, (2) M_PROTO, (3) M_PCPROTO, and (4) M_SIG STREAMS messages.  Assigned (20091001)  None (candidate not yet proposed)    View
41210  CVE-2009-3775  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20091023)  None (candidate not yet proposed)    View

Page 20523 of 20943, showing 5 records out of 104715 total, starting on record 102611, ending on 102615

Actions