CVE List

Id CVE No. Status Description Phase Votes Comments Actions
41473  CVE-2009-4038  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in NCH Software Axon Virtual PBX 2.10 and 2.11 allow remote attackers to inject arbitrary web script or HTML via the (1) onok or (2) oncancel parameter to the logon program. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20091120)  None (candidate not yet proposed)    View
41729  CVE-2009-4294  Candidate  Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.  Assigned (20091211)  None (candidate not yet proposed)    View
41985  CVE-2009-4550  Candidate  SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the func parameter to index.php.  Assigned (20100104)  None (candidate not yet proposed)    View
42241  CVE-2009-4806  Candidate  admin/save_user.asp in Digital Interchange Document Library 1.0.1 does not require administrative authentication, which allows remote attackers to read or modify the administrator"s credentials via unspecified vectors. NOTE: some of these details are obtained from third party information.  Assigned (20100423)  None (candidate not yet proposed)    View
42497  CVE-2009-5062  Candidate  IBM Lotus Quickr 8.1 before 8.1.0.15 services for Lotus Domino on AIX allows remote authenticated users to cause a denial of service (daemon crash) by subscribing to an Atom feed, aka SPR JRIE7VKMP9.  Assigned (20110322)  None (candidate not yet proposed)    View

Page 752 of 20943, showing 5 records out of 104715 total, starting on record 3756, ending on 3760

Actions