CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42240  CVE-2009-4805  Candidate  Multiple SQL injection vulnerabilities in EZ-Blog Beta 1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the storyid parameter to public/view.php or (2) the kill parameter to admin/remove.php.  Assigned (20100423)  None (candidate not yet proposed)    View
42496  CVE-2009-5061  Candidate  Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.14 services for Lotus Domino, when Domino Native Authentication is enabled, might allow remote authenticated users to cause a denial of service (daemon crash) by going offline, aka SPR MLZG7UPB9N.  Assigned (20110322)  None (candidate not yet proposed)    View
42752  CVE-2010-0168  Candidate  The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 before 3.6.2 does not apply scheme restrictions and policy restrictions to the image"s URL, which might allow remote attackers to cause a denial of service (application crash or hang) or hijack the functionality of the browser"s add-ons via a crafted SRC attribute of an IMG element, as demonstrated by remote command execution through an ssh: URL in a configuration that supports gnome-vfs with a nonstandard network.gnomevfs.supported-protocols setting.  Assigned (20100106)  None (candidate not yet proposed)    View
43008  CVE-2010-0424  Candidate  The edit_cmd function in crontab.c in (1) cronie before 1.4.4 and (2) Vixie cron (vixie-cron) allows local users to change the modification times of arbitrary files, and consequently cause a denial of service, via a symlink attack on a temporary file in the /tmp directory.  Assigned (20100127)  None (candidate not yet proposed)    View
43264  CVE-2010-0680  Candidate  Directory traversal vulnerability in index.php in ZeusCMS 0.2 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the page parameter.  Assigned (20100222)  None (candidate not yet proposed)    View

Page 673 of 20943, showing 5 records out of 104715 total, starting on record 3361, ending on 3365

Actions