CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2009-4669

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in RoomPHPlanning 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the loginus parameter to Login.php or (2) the Old Password field to changepwd.php, and allow (3) remote authenticated administrators to execute arbitrary SQL commands via the id parameter to admin/userform.php.

    Published: 5 Mar 2010
    7.5
    High

    CVE-2009-4672

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in main.php in the WP-Lytebox plugin 1.3 for WordPress allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the pg parameter.

    Published: 5 Mar 2010
    7.5
    High

    CVE-2009-4673

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in profile.php in Mole Group Adult Portal Script allows remote attackers to execute arbitrary SQL commands via the user_id parameter.

    Published: 5 Mar 2010
    7.5
    High

    CVE-2009-4674

    Last Modified: 11 Apr 2025

    admin/admin.php in Mole Group Sky Hunter Airline Ticket Sale Script and Bus Ticket Script allows remote attackers to change an arbitrary password via a modified user_id field.

    Published: 5 Mar 2010
    7.5
    High

    CVE-2009-4675

    Last Modified: 11 Apr 2025

    admin/admin_info/index.php in the Mole Group Gastro Portal (Restaurant Directory) Script does not require administrative authentication, which allows remote attackers to change the admin password via an unspecified form submission.

    Published: 5 Mar 2010
    7.5
    High

    CVE-2009-4671

    Last Modified: 11 Apr 2025

    Login.php in RoomPHPlanning 1.6 allows remote attackers to bypass authentication and obtain administrative access by setting the room_phplanning cookie to a value associated with the admin account.

    Published: 5 Mar 2010
    7.5
    High

    CVE-2009-4670

    Last Modified: 11 Apr 2025

    admin/delitem.php in RoomPHPlanning 1.6 does not require authentication, which allows remote attackers to (1) delete arbitrary users via the user parameter or (2) delete arbitrary rooms via the room parameter.

    Published: 5 Mar 2010
    4.3
    Medium

    CVE-2010-0927

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in help/readme.nsf/Header in the Help component in IBM Lotus Domino 7.x before 7.0.4 and 8.x before 8.0.2 allows remote attackers to inject arbitrary web script or HTML via the BaseTarget parameter in an OpenPage action. NOTE: this may overlap CVE-2010-0920.

    Published: 5 Mar 2010
    10
    Critical

    CVE-2009-2754

    Last Modified: 11 Apr 2025

    Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3 and EMC Legato NetWorker, allows remote attackers to execute arbitrary code via a crafted parameter size that triggers a stack-based buffer overflow.

    Published: 5 Mar 2010
    7.8
    High

    CVE-2010-0587

    Last Modified: 11 Apr 2025

    Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x before 4.3(2)SR2, 6.x before 6.1(5), 7.x before 7.1(3a)su1, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SCCP StationCapabilitiesRes message with an invalid MaxCap field, aka Bug ID CSCtc38985.

    Published: 5 Mar 2010
    7.8
    High

    CVE-2010-0588

    Last Modified: 11 Apr 2025

    Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5), 7.x before 7.1(3a)su1, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SCCP (1) RegAvailableLines or (2) FwdStatReq message with an invalid Line number, aka Bug ID CSCtc47823.

    Published: 5 Mar 2010
    7.8
    High

    CVE-2010-0590

    Last Modified: 11 Apr 2025

    The CMSIPUtility component in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.x before 7.1(3a)su1 and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP Register message, aka Bug ID CSCtc37188.

    Published: 5 Mar 2010
    7.8
    High

    CVE-2010-0591

    Last Modified: 11 Apr 2025

    Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5), 7.x before 7.1(3b)SU2, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP REG message, related to an overflow of the Telephone-URL field, aka Bug ID CSCtc62362.

    Published: 5 Mar 2010
    10
    Critical

    CVE-2009-2753

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3, allow remote attackers to execute arbitrary code via a crafted parameter size.

    Published: 5 Mar 2010
    7.8
    High

    CVE-2010-0592

    Last Modified: 11 Apr 2025

    The CTI Manager service in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x before 4.3(2)sr1a, 6.x before 6.1(3), 7.0x before 7.0(2), 7.1x before 7.1(2), and 8.x before 8.0(1) allows remote attackers to cause a denial of service (service failure) via a malformed message, aka Bug ID CSCsu31800.

    Published: 5 Mar 2010
    5
    Medium

    CVE-2010-1621

    Last Modified: 11 Apr 2025

    The mysql_uninstall_plugin function in sql/sql_plugin.cc in MySQL 5.1 before 5.1.46 does not check privileges before uninstalling a plugin, which allows remote attackers to uninstall arbitrary plugins via the UNINSTALL PLUGIN command.

    Published: 5 Mar 2010
    2.1
    Low

    CVE-2010-0790

    Last Modified: 11 Apr 2025

    sutil/ncpumount.c in ncpumount in ncpfs 2.2.6 produces certain detailed error messages about the results of privileged file-access attempts, which allows local users to determine the existence of arbitrary files via the mountpoint name.

    Published: 5 Mar 2010
    2.1
    Low

    CVE-2010-0791

    Last Modified: 11 Apr 2025

    The (1) ncpmount, (2) ncpumount, and (3) ncplogin programs in ncpfs 2.2.6 do not properly create lock files, which allows local users to cause a denial of service (application failure) via unspecified vectors that trigger the creation of a /etc/mtab~ file that persists after the program exits.

    Published: 5 Mar 2010
    10
    Critical

    CVE-2010-0055

    Last Modified: 11 Apr 2025

    xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.

    Published: 4 Mar 2010
    4
    Medium

    CVE-2010-0928

    Last Modified: 11 Apr 2025

    OpenSSL 0.9.8i on the Gaisler Research LEON3 SoC on the Xilinx Virtex-II Pro FPGA uses a Fixed Width Exponentiation (FWE) algorithm for certain signature calculations, and does not verify the signature before providing it to a caller, which makes it easier for physically proximate attackers to determine the private key via a modified supply voltage for the microprocessor, related to a "fault-based attack."

    Published: 4 Mar 2010
    4.7
    Medium

    CVE-2010-3015

    Last Modified: 11 Apr 2025

    Integer overflow in the ext4_ext_get_blocks function in fs/ext4/extents.c in the Linux kernel before 2.6.34 allows local users to cause a denial of service (BUG and system crash) via a write operation on the last block of a large file, followed by a sync operation.

    Published: 4 Mar 2010
    7.5
    High

    CVE-2009-4657

    Last Modified: 11 Apr 2025

    The administrator package for Xerver 4.32 does not require authentication, which allows remote attackers to alter application settings by connecting to the application on port 32123, as demonstrated by setting the action option to wizardStep1.

    Published: 3 Mar 2010
    4
    Medium

    CVE-2009-4658

    Last Modified: 11 Apr 2025

    Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the management interface. NOTE: this can be leveraged by non-authenticated attackers using CVE-2009-4657.

    Published: 3 Mar 2010
    4.3
    Medium

    CVE-2009-4659

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in MP3-Cutter Ease Audio Cutter 1.20 allows user-assisted remote attackers to cause a denial of service (application crash) via a long string in a WAV file.

    Published: 3 Mar 2010
    10
    Critical

    CVE-2009-4660

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary code via a long GET request to TCP port 6660.

    Published: 3 Mar 2010
    4.3
    Medium

    CVE-2009-4661

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted ZIP file that is not properly handled when the victim uses the (1) Update or (2) Plug-In console menu item.

    Published: 3 Mar 2010
    9.3
    Critical

    CVE-2009-4656

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in E-Soft DJ Studio Pro 4.2 including 4.2.2.7.5, and 5.x including 5.1.4.3.1, allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a playlist file (.pls) containing a long string. NOTE: some of these details are obtained from third party information.

    Published: 3 Mar 2010
    9.3
    Critical

    CVE-2009-4663

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the Quiksoft EasyMail Objects 6 ActiveX control allows remote attackers to execute arbitrary code via a long argument to the AddAttachment method.

    Published: 3 Mar 2010
    4.3
    Medium

    CVE-2009-4662

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 7.0 before 7.03 HP4 and 8.0 before 8.0 SP1 allows remote attackers to inject arbitrary web script or HTML via the User.Theme.index parameter.

    Published: 3 Mar 2010
    3.3
    Low

    CVE-2010-0156

    Last Modified: 11 Apr 2025

    Puppet 0.24.x before 0.24.9 and 0.25.x before 0.25.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/daemonout, (2) /tmp/puppetdoc.txt, (3) /tmp/puppetdoc.tex, or (4) /tmp/puppetdoc.aux temporary file.

    Published: 3 Mar 2010
    7.6
    High

    CVE-2010-0483

    Last Modified: 11 Apr 2025

    vbscript.dll in VBScript 5.1, 5.6, 5.7, and 5.8 in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, when Internet Explorer is used, allows user-assisted remote attackers to execute arbitrary code by referencing a (1) local pathname, (2) UNC share pathname, or (3) WebDAV server with a crafted .hlp file in the fourth argument (aka helpfile argument) to the MsgBox function, leading to code execution involving winhlp32.exe when the F1 key is pressed, aka "VBScript Help Keypress Vulnerability."

    Published: 3 Mar 2010
    9.3
    Critical

    CVE-2010-0766

    Last Modified: 11 Apr 2025

    Integer overflow in the Swap4 function in valet4.dll in Luxology Modo 401 allows user-assisted remote attackers to execute arbitrary code via a .LXO file containing a CHNL subchunk associated with an invalid length.

    Published: 3 Mar 2010
    7.6
    High

    CVE-2010-0917

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in VBScript in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, when Internet Explorer is used, might allow user-assisted remote attackers to execute arbitrary code via a long string in the fourth argument (aka helpfile argument) to the MsgBox function, leading to code execution when the F1 key is pressed, a different vulnerability than CVE-2010-0483.

    Published: 3 Mar 2010
    10
    Critical

    CVE-2010-0918

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in the UltraLite functionality in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 have unknown impact and attack vectors.

    Published: 3 Mar 2010
    7.6
    High

    CVE-2010-0919

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the Lotus Domino Web Access ActiveX control in IBM Lotus iNotes (aka Domino Web Access or DWA) 6.5, 7.0 before 7.0.4, 8.0, 8.0.2, and before 229.281 for Domino 8.0.2 FP4 allows remote attackers to execute arbitrary code via a long URL argument to an unspecified method, aka PRAD7JTNHJ.

    Published: 3 Mar 2010
    4.3
    Medium

    CVE-2010-0920

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 allows remote attackers to inject arbitrary web script or HTML via vectors related to lack of "XSS/CSRF Get Filter and Referer Check fixes."

    Published: 3 Mar 2010
    6.8
    Medium

    CVE-2010-0921

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 allows remote attackers to hijack the authentication of unspecified victims via vectors related to lack of "XSS/CSRF Get Filter and Referer Check fixes."

    Published: 3 Mar 2010
    7.8
    High

    CVE-2010-0922

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in secldapclntd in IBM AIX 5.3 with SP 5300-11-02 allows attackers to cause a denial of service (LDAP login failure) via unknown vectors. NOTE: some of these details are obtained from third party information. NOTE: there may be no attacker role, and the issue may be triggered entirely by an administrator's installation of an official service pack.

    Published: 3 Mar 2010
    5
    Medium

    CVE-2010-0924

    Last Modified: 11 Apr 2025

    cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.3 and 4.0.4 on Windows, allows remote attackers to cause a denial of service (application crash) via a long string in the BACKGROUND attribute of a BODY element.

    Published: 3 Mar 2010
    5
    Medium

    CVE-2010-0925

    Last Modified: 11 Apr 2025

    cfnetwork.dll 1.450.5.0 in CFNetwork, as used by safari.exe 531.21.10 in Apple Safari 4.0.4 on Windows, allows remote attackers to cause a denial of service (application crash) via a long string in the SRC attribute of a (1) IMG or (2) IFRAME element.

    Published: 3 Mar 2010
    7.5
    High

    CVE-2010-0302

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epoll is used, allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-3553.

    Published: 3 Mar 2010
    1.9
    Low

    CVE-2010-0792

    Last Modified: 11 Apr 2025

    fcrontab in fcron before 3.0.5 allows local users to read arbitrary files via a symlink attack on an unspecified file.

    Published: 3 Mar 2010
    6.8
    Medium

    CVE-2010-1192

    Last Modified: 11 Apr 2025

    libESMTP, probably 1.0.4 and earlier, does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

    Published: 3 Mar 2010
    6.8
    Medium

    CVE-2010-1194

    Last Modified: 11 Apr 2025

    The match_component function in smtp-tls.c in libESMTP 1.0.3.r1, and possibly other versions including 1.0.4, treats two strings as equal if one is a substring of the other, which allows remote attackers to spoof trusted certificates via a crafted subjectAltName.

    Published: 3 Mar 2010
    6.9
    Medium

    CVE-2010-0393

    Last Modified: 11 Apr 2025

    The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine the file that provides localized message strings, which allows local users to gain privileges via a file that contains crafted localization data with format string specifiers.

    Published: 3 Mar 2010
    5
    Medium

    CVE-2010-2432

    Last Modified: 11 Apr 2025

    The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for authorization, which allows remote CUPS servers to cause a denial of service (infinite loop) via HTTP_UNAUTHORIZED responses.

    Published: 3 Mar 2010
    7.5
    High

    CVE-2010-0802

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in (nv2) Awards 1.1.0, a modification for Invision Power Board, allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action.

    Published: 2 Mar 2010
    7.5
    High

    CVE-2010-0795

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in an event action to index.php.

    Published: 2 Mar 2010
    7.5
    High

    CVE-2010-0796

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the JE Quiz (com_jequizmanagement) component 1.b01 for Joomla! allows remote attackers to execute arbitrary SQL commands via the eid parameter in a question action to index.php.

    Published: 2 Mar 2010
    4.3
    Medium

    CVE-2010-0797

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the T3BLOG extension 0.6.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 2 Mar 2010