CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2009-4459

    Last Modified: 23 Apr 2026

    Redmine 0.8.7 and earlier uses the title tag before defining the character encoding in a meta tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks and inject arbitrary script via UTF-7 encoded values in the title parameter to a new issue page, which may be interpreted as script by Internet Explorer 7 and 8.

    Published: 30 Dec 2009
    10
    Critical

    CVE-2009-4463

    Last Modified: 23 Apr 2026

    Intellicom NetBiter WebSCADA devices use default passwords for the HICP network configuration service, which makes it easier for remote attackers to modify network settings and cause a denial of service. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation. NOTE: this issue was originally reported to be hard-coded passwords, not default passwords.

    Published: 30 Dec 2009
    4.3
    Medium

    CVE-2009-4464

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in searchadvance.asp in Active Business Directory 2 allows remote attackers to inject arbitrary web script or HTML via the search parameter.

    Published: 30 Dec 2009
    4.3
    Medium

    CVE-2009-4460

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Auto-Surf Traffic Exchange Script 1.1 allow remote attackers to inject arbitrary web script or HTML via the rid parameter to (1) index.php, (2) faq.php, and (3) register.php.

    Published: 30 Dec 2009
    5
    Medium

    CVE-2009-4466

    Last Modified: 23 Apr 2026

    DeluxeBB 1.3 allows remote attackers to obtain sensitive information via a crafted page parameter to misc.php, which reveals the installation path in an error message. NOTE: this issue might be resultant from improperly controlled computation in tools.php that leads to a denial of service (CPU or memory consumption).

    Published: 30 Dec 2009
    7.5
    High

    CVE-2009-4457

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the Vsftpd Webmin module before 1.3b for the Vsftpd server have unknown impact and attack vectors related to "Some security issues."

    Published: 30 Dec 2009
    4.3
    Medium

    CVE-2009-4458

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.2 and 2.6.0rc2, and possibly other versions, allow remote attackers to inject arbitrary web script or HTML via the (1) tech parameter to admin/admin/config.php during a trunks display action, the (2) description parameter during an Add Zap Channel action, and (3) unspecified vectors during an Add Recordings action.

    Published: 30 Dec 2009
    7.5
    High

    CVE-2009-4456

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in news_detail.php in Green Desktiny 2.3.1, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 30 Dec 2009
    7.5
    High

    CVE-2009-4565

    Last Modified: 23 Apr 2026

    sendmail before 8.14.4 does not properly handle a '\0' character in a Common Name (CN) field of an X.509 certificate, which (1) allows man-in-the-middle attackers to spoof arbitrary SSL-based SMTP servers via a crafted server certificate issued by a legitimate Certification Authority, and (2) allows remote attackers to bypass intended access restrictions via a crafted client certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

    Published: 30 Dec 2009
    6.5
    Medium

    CVE-2009-4455

    Last Modified: 23 Apr 2026

    The default configuration of Cisco ASA 5500 Series Adaptive Security Appliance (Cisco ASA) 7.0, 7.1, 7.2, 8.0, 8.1, and 8.2 allows portal traffic to access arbitrary backend servers, which might allow remote authenticated users to bypass intended access restrictions and access unauthorized web sites via a crafted URL obfuscated with ROT13 and a certain encoding. NOTE: this issue was originally reported as a vulnerability related to lack of restrictions to URLs listed in the Cisco WebVPN bookmark component, but the vendor states that "The bookmark feature is not a security feature."

    Published: 29 Dec 2009
    3.3
    Low

    CVE-2009-4454

    Last Modified: 23 Apr 2026

    vccleaner in VideoCache 1.9.2 allows local users with Squid proxy user privileges to overwrite arbitrary files via a symlink attack on /var/log/videocache/vccleaner.log.

    Published: 29 Dec 2009
    4.3
    Medium

    CVE-2009-4446

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in admin.php in phpInstantGallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

    Published: 29 Dec 2009
    7.5
    High

    CVE-2009-4447

    Last Modified: 23 Apr 2026

    Jax Guestbook 3.5.0 allows remote attackers to bypass authentication and modify administrator settings via a direct request to admin/guestbook.admin.php.

    Published: 29 Dec 2009
    5
    Medium

    CVE-2009-4448

    Last Modified: 23 Apr 2026

    inc/functions_time.php in MyBB (aka MyBulletinBoard) 1.4.10, and possibly earlier versions, allows remote attackers to cause a denial of service (CPU consumption) via a crafted request with a large year value, which triggers a long loop, as reachable through member.php and possibly other vectors.

    Published: 29 Dec 2009
    6.5
    Medium

    CVE-2009-4449

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in MyBB (aka MyBulletinBoard) 1.4.10, and possibly earlier versions, when changing the user avatar from the gallery, allows remote authenticated users to determine the existence of files via directory traversal sequences in the avatar and possibly the gallery parameters, related to (1) admin/modules/user/users.php and (2) usercp.php.

    Published: 29 Dec 2009
    4.3
    Medium

    CVE-2009-4450

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in map.php in LiveZilla 3.1.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lat, (2) lng, and (3) zom parameters, which are not properly handled when processed with templates/map.tpl.

    Published: 29 Dec 2009
    6.8
    Medium

    CVE-2009-4451

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in upper.php in kandalf upper 0.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in fileup/.

    Published: 29 Dec 2009
    6.8
    Medium

    CVE-2009-4452

    Last Modified: 23 Apr 2026

    Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837), 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); and Internet Security 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); use weak permissions (Everyone:Full Control) for the BASES directory, which allows local users to gain SYSTEM privileges by replacing an executable or DLL with a Trojan horse.

    Published: 29 Dec 2009
    8.8
    High

    CVE-2009-4453

    Last Modified: 23 Apr 2026

    Insecure method vulnerability in SoftCab Sound Converter ActiveX control (sndConverter.ocx) 1.2 allows remote attackers to create or overwrite arbitrary files via the SaveFormat method. NOTE: some of these details are obtained from third party information.

    Published: 29 Dec 2009
    6
    Medium

    CVE-2009-4444

    Last Modified: 23 Apr 2026

    Microsoft Internet Information Services (IIS) 5.x and 6.x uses only the portion of a filename before a ; (semicolon) character to determine the file extension, which allows remote attackers to bypass intended extension restrictions of third-party upload applications via a filename with a (1) .asp, (2) .cer, or (3) .asa first extension, followed by a semicolon and a safe extension, as demonstrated by the use of asp.dll to handle a .asp;.jpg file.

    Published: 29 Dec 2009
    6
    Medium

    CVE-2009-4445

    Last Modified: 23 Apr 2026

    Microsoft Internet Information Services (IIS), when used in conjunction with unspecified third-party upload applications, allows remote attackers to create empty files with arbitrary extensions via a filename containing an initial extension followed by a : (colon) and a safe extension, as demonstrated by an upload of a .asp:.jpg file that results in creation of an empty .asp file, related to support for the NTFS Alternate Data Streams (ADS) filename syntax. NOTE: it could be argued that this is a vulnerability in the third-party product, not IIS, because the third-party product should be applying its extension restrictions to the portion of the filename before the colon.

    Published: 29 Dec 2009
    6.8
    Medium

    CVE-2009-1797

    Last Modified: 23 Apr 2026

    Multiple cross-site request forgery (CSRF) vulnerabilities on the Network Management Card (NMC) on American Power Conversion (APC) Switched Rack PDU (aka Rack Mount Power Distribution) devices and other devices allow remote attackers to hijack the authentication of (1) administrator or (2) device users for requests that create new administrative users or have unspecified other impact.

    Published: 28 Dec 2009
    5
    Medium

    CVE-2009-4007

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the NormaliseTrainConsist function in src/train_cmd.cpp in OpenTTD before 0.7.5-RC1 allows remote attackers to cause a denial of service (daemon crash) via certain game actions involving a wagon and a dual-headed engine.

    Published: 28 Dec 2009
    6.5
    Medium

    CVE-2009-4438

    Last Modified: 23 Apr 2026

    The Query Compiler, Rewrite, and Optimizer component in IBM DB2 9.1 before FP8, 9.5 before FP5, and 9.7 before FP1 does not enforce privilege requirements for access to a (1) sequence or (2) global-variable object, which allows remote authenticated users to make use of data via unspecified vectors.

    Published: 28 Dec 2009
    4
    Medium

    CVE-2009-4439

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Query Compiler, Rewrite, and Optimizer component in IBM DB2 9.5 before FP5 allows remote authenticated users to cause a denial of service (instance crash) by compiling a SQL query.

    Published: 28 Dec 2009
    5
    Medium

    CVE-2009-4441

    Last Modified: 23 Apr 2026

    Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not enable the SO_KEEPALIVE socket option, which makes it easier for remote attackers to cause a denial of service (connection slot exhaustion) via multiple connections, aka Bug Id 6782659.

    Published: 28 Dec 2009
    4.3
    Medium

    CVE-2009-4443

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the psearch (aka persistent search) functionality in Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 allows remote attackers to cause a denial of service (psearch outage) by using a crafted psearch client to send requests that trigger a psearch thread loop, aka Bug Id 6855978.

    Published: 28 Dec 2009
    4.3
    Medium

    CVE-2009-1798

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities on the Network Management Card (NMC) on American Power Conversion (APC) Switched Rack PDU (aka Rack Mount Power Distribution) devices and other devices allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: the login_username vector for Forms/login1 is already covered by CVE-2009-4406.

    Published: 28 Dec 2009
    5
    Medium

    CVE-2009-4442

    Last Modified: 23 Apr 2026

    Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly implement the max-client-connections configuration setting, which allows remote attackers to cause a denial of service (connection slot exhaustion) by making multiple connections and performing no operations on these connections, aka Bug Id 6648665.

    Published: 28 Dec 2009
    6.8
    Medium

    CVE-2009-4440

    Last Modified: 23 Apr 2026

    Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly handle multiple client connections within a short time window, which allows remote attackers to hijack the backend connection of an authenticated user, and obtain the privileges of this user, by making a client connection in opportunistic circumstances, related to "long binds," aka Bug Ids 6828462 and 6823593.

    Published: 28 Dec 2009
    4.3
    Medium

    CVE-2009-4425

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in iDevCart 1.09 allows remote attackers to inject arbitrary web script or HTML via the SEARCH parameter in a browse action.

    Published: 28 Dec 2009
    6.8
    Medium

    CVE-2009-4426

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in Ignition 1.2, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the blog parameter to (1) comment.php and (2) view.php.

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4428

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the JoomPortfolio (com_joomportfolio) component 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the secid parameter in a showcat action to index.php.

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4432

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in CodeMight VideoCMS 3.1 allows remote attackers to execute arbitrary SQL commands via the v parameter in a video action.

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4436

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Active Web Softwares eWebquiz 8 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter to (1) questions.asp, (2) importquestions.asp, and (3) quiztakers.asp, different vectors than CVE-2007-1706.

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4437

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Active Auction House 3.6 allow remote attackers to execute arbitrary SQL commands via the (1) catid parameter to wishlist.asp and the (2) linkid parameter to links.asp. NOTE: vector 1 might overlap CVE-2005-1029.1.

    Published: 28 Dec 2009
    6.8
    Medium

    CVE-2009-4435

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in F3Site 2009 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the GLOBALS[nlang] parameter to (1) mod/poll.php and (2) mod/new.php.

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4430

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in VirtueMart 1.0 allows remote attackers to execute arbitrary SQL commands via the product_id parameter in a shop.product_details shop.flypage action.

    Published: 28 Dec 2009
    5
    Medium

    CVE-2009-4434

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in IDevSpot iSupport 1.8 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the include_file parameter.

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4424

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in results.php in the Pyrmont plugin 2 for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 28 Dec 2009
    3.5
    Low

    CVE-2009-4429

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Sections module 5.x before 5.x-1.3 and 6.x before 6.x-1.3 for Drupal allows remote authenticated users with "administer sections" privileges to inject arbitrary web script or HTML via a section name (aka the Name field).

    Published: 28 Dec 2009
    7.5
    High

    CVE-2009-4431

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in cal_popup.php in the Anything Digital Development JCal Pro (aka com_jcalpro or JCP) component 1.5.3.6 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Published: 28 Dec 2009
    4.3
    Medium

    CVE-2009-4433

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot iSupport 1.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (a) 5 or (b) 9 field in a post action to ticket_function.php, reachable through ticket_submit.php and index.php; (c) the which parameter to function.php, or (d) the which parameter to index.php, related to knowledgebase_list.php. NOTE: some of these details are obtained from third party information.

    Published: 28 Dec 2009
    4.3
    Medium

    CVE-2010-0654

    Last Modified: 11 Apr 2025

    Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 permit cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote attackers to obtain sensitive information via a crafted document.

    Published: 28 Dec 2009
    5
    Medium

    CVE-2009-3295

    Last Modified: 23 Apr 2026

    The prep_reprocess_req function in kdc/do_tgs_req.c in the cross-realm referral implementation in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a ticket request.

    Published: 28 Dec 2009
    7.8
    High

    CVE-2009-4536

    Last Modified: 23 Apr 2026

    drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame, which allows remote attackers to bypass packet filters via a large packet with a crafted payload. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1385.

    Published: 28 Dec 2009
    7.8
    High

    CVE-2009-4537

    Last Modified: 23 Apr 2026

    drivers/net/r8169.c in the r8169 driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to (1) cause a denial of service (temporary network outage) via a packet with a crafted size, in conjunction with certain packets containing A characters and certain packets containing E characters; or (2) cause a denial of service (system crash) via a packet with a crafted size, in conjunction with certain packets containing '\0' characters, related to the value of the status register and erroneous behavior associated with the RxMaxSize register. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1389.

    Published: 28 Dec 2009
    10
    Critical

    CVE-2009-4538

    Last Modified: 23 Apr 2026

    drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a related issue to CVE-2009-4537.

    Published: 28 Dec 2009
    4
    Medium

    CVE-2010-0308

    Last Modified: 11 Apr 2025

    lib/rfc1035.c in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15 allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header.

    Published: 27 Dec 2009
    5
    Medium

    CVE-2010-0277

    Last Modified: 23 Apr 2026

    slp.c in the MSN protocol plugin in libpurple in Pidgin before 2.6.6, including 2.6.4, and Adium 1.3.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a malformed MSNSLP INVITE request in an SLP message, a different issue than CVE-2010-0013.

    Published: 27 Dec 2009