CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39688  CVE-2009-2253  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20090627)  None (candidate not yet proposed)    View
39944  CVE-2009-2509  Candidate  Active Directory Federation Services (ADFS) in Microsoft Windows Server 2003 SP2 and Server 2008 Gold and SP2 does not properly validate headers in HTTP requests, which allows remote authenticated users to execute arbitrary code via a crafted request to an IIS web server, aka "Remote Code Execution in ADFS Vulnerability."  Assigned (20090717)  None (candidate not yet proposed)    View
40200  CVE-2009-2765  Candidate  httpd.c in httpd in the management GUI in DD-WRT 24 sp1, and other versions before build 12533, allows remote attackers to execute arbitrary commands via shell metacharacters in a request to a cgi-bin/ URI.  Assigned (20090814)  None (candidate not yet proposed)    View
40456  CVE-2009-3021  Candidate  Cross-site scripting (XSS) vulnerability in Site Calendar "mycaljp" plugin 2.0.0 through 2.0.6, as used in the Japanese extended package of Geeklog 1.5.0 through 1.5.2 and when distributed 20090629 or earlier, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090831)  None (candidate not yet proposed)    View
40712  CVE-2009-3277  Candidate  DataVault.Tesla/Impl/TypeSystem/AssociationHelper.cs in datavault allows context-dependent attackers to cause a denial of service (CPU consumption) via an input string composed of an [ (open bracket) followed by many commas, related to a certain regular expression, aka a "ReDoS" vulnerability.  Assigned (20090921)  None (candidate not yet proposed)    View

Page 700 of 20943, showing 5 records out of 104715 total, starting on record 3496, ending on 3500

Actions