CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2009-4251

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Jasc Paint Shop Pro 8.10 (aka Corel Paint Shop Pro) allows user-assisted remote attackers to execute arbitrary code via a crafted PNG file. NOTE: this might be the same issue as CVE-2007-2366.

    Published: 10 Dec 2009
    7.5
    High

    CVE-2010-0015

    Last Modified: 23 Apr 2026

    nis/nss_nis/nis-pwd.c in the GNU C Library (aka glibc or libc6) 2.7 and Embedded GLIBC (EGLIBC) 2.10.2 adds information from the passwd.adjunct.byname map to entries in the passwd map, which allows remote attackers to obtain the encrypted passwords of NIS accounts by calling the getpwnam function.

    Published: 10 Dec 2009
    2.1
    Low

    CVE-2009-4145

    Last Modified: 23 Apr 2026

    nm-connection-editor in NetworkManager (NM) 0.7.x exports connection objects over D-Bus upon actions in the connection editor GUI, which allows local users to obtain sensitive information by reading D-Bus signals, as demonstrated by using dbus-monitor to discover the password for the WiFi network.

    Published: 10 Dec 2009
    4.3
    Medium

    CVE-2009-4250

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allow remote attackers to inject arbitrary web script or HTML via (1) the result parameter to register.php; (2) the user parameter to search.php; the (3) cat_msg, (4) source_msg, (5) postponed_selected, (6) unapproved_selected, and (7) news_per_page parameters in a list action to the editnews module of index.php; and (8) the link tag in news comments. NOTE: some of the vulnerabilities require register_globals to be enabled and/or magic_quotes_gpc to be disabled.

    Published: 10 Dec 2009
    10
    Critical

    CVE-2009-4240

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in unspecified setuid executables in the DataStage subsystem in IBM InfoSphere Information Server 8.1 before FP1 have unknown impact and attack vectors.

    Published: 9 Dec 2009
    4.3
    Medium

    CVE-2009-4239

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Web console in IBM InfoSphere Information Server 8.1 before FP1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 9 Dec 2009
    9.3
    Critical

    CVE-2009-0102

    Last Modified: 23 Apr 2026

    Microsoft Project 2000 SR1 and 2002 SP1, and Office Project 2003 SP3, does not properly handle memory allocation for Project files, which allows remote attackers to execute arbitrary code via a malformed file, aka "Project Memory Validation Vulnerability."

    Published: 9 Dec 2009
    9
    Critical

    CVE-2009-2509

    Last Modified: 23 Apr 2026

    Active Directory Federation Services (ADFS) in Microsoft Windows Server 2003 SP2 and Server 2008 Gold and SP2 does not properly validate headers in HTTP requests, which allows remote authenticated users to execute arbitrary code via a crafted request to an IIS web server, aka "Remote Code Execution in ADFS Vulnerability."

    Published: 9 Dec 2009
    10
    Critical

    CVE-2009-3677

    Last Modified: 23 Apr 2026

    The Internet Authentication Service (IAS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold and SP1, and Server 2008 Gold does not properly verify the credentials in an MS-CHAP v2 Protected Extensible Authentication Protocol (PEAP) authentication request, which allows remote attackers to access network resources via a malformed request, aka "MS-CHAP Authentication Bypass Vulnerability."

    Published: 9 Dec 2009
    4.3
    Medium

    CVE-2009-4149

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the web interface in CA Service Desk 12.1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.

    Published: 9 Dec 2009
    10
    Critical

    CVE-2009-2505

    Last Modified: 23 Apr 2026

    The Internet Authentication Service (IAS) in Microsoft Windows Vista SP2 and Server 2008 SP2 does not properly validate MS-CHAP v2 Protected Extensible Authentication Protocol (PEAP) authentication requests, which allows remote attackers to execute arbitrary code via crafted structures in a malformed request, aka "Internet Authentication Service Memory Corruption Vulnerability."

    Published: 9 Dec 2009
    9.3
    Critical

    CVE-2009-2506

    Last Modified: 23 Apr 2026

    Integer overflow in the text converters in Microsoft Office Word 2002 SP3 and 2003 SP3; Works 8.5; Office Converter Pack; and WordPad in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a DOC file with an invalid number of property names in the DocumentSummaryInformation stream, which triggers a heap-based buffer overflow.

    Published: 9 Dec 2009
    9.3
    Critical

    CVE-2009-3674

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671.

    Published: 9 Dec 2009
    6.9
    Medium

    CVE-2009-2508

    Last Modified: 23 Apr 2026

    The single sign-on implementation in Active Directory Federation Services (ADFS) in Microsoft Windows Server 2003 SP2 and Server 2008 Gold and SP2 does not properly remove credentials at the end of a network session, which allows physically proximate attackers to obtain the credentials of a previous user of the same web browser by using data from the browser's cache, aka "Single Sign On Spoofing in ADFS Vulnerability."

    Published: 9 Dec 2009
    8.1
    High

    CVE-2009-3671

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3674.

    Published: 9 Dec 2009
    9.3
    Critical

    CVE-2009-3673

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 7 and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."

    Published: 9 Dec 2009
    6.8
    Medium

    CVE-2009-3675

    Last Modified: 23 Apr 2026

    LSASS.exe in the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote authenticated users to cause a denial of service (CPU consumption) via a malformed ISAKMP request over IPsec, aka "Local Security Authority Subsystem Service Resource Exhaustion Vulnerability."

    Published: 9 Dec 2009
    7.2
    High

    CVE-2009-4131

    Last Modified: 23 Apr 2026

    The EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel before 2.6.32-git6 allows local users to overwrite arbitrary files via a crafted request, related to insufficient checks for file permissions.

    Published: 9 Dec 2009
    4.3
    Medium

    CVE-2010-0434

    Last Modified: 11 Apr 2025

    The ap_read_request function in server/protocol.c in the Apache HTTP Server 2.2.x before 2.2.15, when a multithreaded MPM is used, does not properly handle headers in subrequests in certain circumstances involving a parent request that has a body, which might allow remote attackers to obtain sensitive information via a crafted request that triggers access to memory locations associated with an earlier request.

    Published: 9 Dec 2009
    4.3
    Medium

    CVE-2009-1380

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in JMX-Console in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP08 and 4.3 before 4.3.0.CP07 allows remote attackers to inject arbitrary web script or HTML via the filter parameter, related to the key property and the position of quote and colon characters.

    Published: 9 Dec 2009
    5.8
    Medium

    CVE-2009-4034

    Last Modified: 23 Apr 2026

    PostgreSQL 7.4.x before 7.4.27, 8.0.x before 8.0.23, 8.1.x before 8.1.19, 8.2.x before 8.2.15, 8.3.x before 8.3.9, and 8.4.x before 8.4.2 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which (1) allows man-in-the-middle attackers to spoof arbitrary SSL-based PostgreSQL servers via a crafted server certificate issued by a legitimate Certification Authority, and (2) allows remote attackers to bypass intended client-hostname restrictions via a crafted client certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.

    Published: 9 Dec 2009
    10
    Critical

    CVE-2009-3844

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the OmniInet process in HP OpenView Data Protector Application Recovery Manager 5.50 and 6.0 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted MSG_PROTOCOL packet.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-1568

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in ienipp.ocx in Novell iPrint Client 5.30, and possibly other versions before 5.32, allows remote attackers to execute arbitrary code via a long target-frame parameter.

    Published: 8 Dec 2009
    5
    Medium

    CVE-2009-4236

    Last Modified: 23 Apr 2026

    The process function in data/class/pages/admin/customer/LC_Page_Admin_Customer_SearchCustomer.php in EC-CUBE Ver2 2.4.0 RC1 through 2.4.1, and Community Edition r18068 through r18428, allows remote attackers to obtain sensitive information (customer data) via unknown vectors related to sessions.

    Published: 8 Dec 2009
    7.8
    High

    CVE-2009-1298

    Last Modified: 23 Apr 2026

    The ip_frag_reasm function in net/ipv4/ip_fragment.c in the Linux kernel 2.6.32-rc8, and 2.6.29 and later versions before 2.6.32, calls IP_INC_STATS_BH with an incorrect argument, which allows remote attackers to cause a denial of service (NULL pointer dereference and hang) via long IP packets, possibly related to the ip_defrag function.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-1569

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in Novell iPrint Client 4.38, 5.30, and possibly other versions before 5.32 allow remote attackers to execute arbitrary code via vectors related to (1) Date and (2) Time.

    Published: 8 Dec 2009
    4.3
    Medium

    CVE-2009-4234

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in loginpages/error_user.shtml on the Micronet Network Access Controller SP1910 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

    Published: 8 Dec 2009
    4.3
    Medium

    CVE-2009-4233

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in modules/mod_yj_whois.php in the YJ Whois component 1.0x and 1.5.x for Joomla! allows remote attackers to inject arbitrary web script or HTML via the domain parameter to index.php. NOTE: some of these details are obtained from third party information.

    Published: 8 Dec 2009
    5
    Medium

    CVE-2009-4232

    Last Modified: 23 Apr 2026

    The Kide Shoutbox (com_kide) component 0.4.6 for Joomla! does not properly perform authentication, which allows remote attackers to post messages with an arbitrary account name via an insertar action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Dec 2009
    7.5
    High

    CVE-2009-4231

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in as/lib/plugins.php in SweetRice 0.5.3 and earlier allows remote attackers to include and execute arbitrary local files via .. (dot dot) in the plugin parameter.

    Published: 8 Dec 2009
    7.5
    High

    CVE-2009-4230

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in src/Task.cc in the FastCGI program in IIPImage Server before 0.9.8 might allow remote attackers to execute arbitrary code via vectors associated with crafted arguments to the (1) RGN::run, (2) JTLS::run, or (3) SHD::run function. NOTE: some of these details are obtained from third party information.

    Published: 8 Dec 2009
    7.5
    High

    CVE-2009-4229

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in ActiveWebSoftwares Active Bids allow remote attackers to execute arbitrary SQL commands via (1) the catid parameter in the PATH_INFO to the default URI or (2) the catid parameter to default.asp. NOTE: this might overlap CVE-2009-0429.3. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Dec 2009
    7.5
    High

    CVE-2009-3586

    Last Modified: 23 Apr 2026

    Off-by-one error in src/http.c in CoreHTTP 0.5.3.1 and earlier allows remote attackers to cause a denial of service or possibly execute arbitrary code via an HTTP request with a long first line that triggers a buffer overflow. NOTE: this vulnerability reportedly exists because of an incorrect fix for CVE-2007-4060.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-4225

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrary code via a long argument to the Initialize method.

    Published: 8 Dec 2009
    7.1
    High

    CVE-2009-4226

    Last Modified: 23 Apr 2026

    Race condition in the IP module in the kernel in Sun OpenSolaris snv_106 through snv_124 allows remote attackers to cause a denial of service (NULL pointer dereference and panic) via unspecified vectors related to the (1) tcp_do_getsockname or (2) tcp_do_getpeername function.

    Published: 8 Dec 2009
    6.4
    Medium

    CVE-2009-2749

    Last Modified: 23 Apr 2026

    Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 uses predictable session values, which allows man-in-the-middle attackers to spoof a collaboration session by guessing the value.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3994

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the GetUID function in src-IL/src/il_dicom.c in DevIL 1.7.8 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted DICOM file.

    Published: 8 Dec 2009
    5
    Medium

    CVE-2009-2843

    Last Modified: 23 Apr 2026

    Java for Mac OS X 10.5 before Update 6 and 10.6 before Update 1 accepts expired certificates for applets, which makes it easier for remote attackers to execute arbitrary code via an applet.

    Published: 8 Dec 2009
    6.4
    Medium

    CVE-2009-3563

    Last Modified: 23 Apr 2026

    ntp_request.c in ntpd in NTP before 4.2.4p8, and 4.2.5, allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by using MODE_PRIVATE to send a spoofed (1) request or (2) response packet that triggers a continuous exchange of MODE_PRIVATE error responses between two NTP daemons.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3798

    Last Modified: 23 Apr 2026

    Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 might allow attackers to execute arbitrary code via unspecified vectors that trigger memory corruption.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3799

    Last Modified: 23 Apr 2026

    Integer overflow in the Verifier::parseExceptionHandlers function in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via an SWF file with a large exception_count value that triggers memory corruption, related to "generation of ActionScript exception handlers."

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3800

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allow attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3794

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 allows remote attackers to execute arbitrary code via crafted dimensions of JPEG data in an SWF file.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3796

    Last Modified: 23 Apr 2026

    Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 might allow attackers to execute arbitrary code via unspecified vectors, related to a "data injection vulnerability."

    Published: 8 Dec 2009
    6.8
    Medium

    CVE-2009-4144

    Last Modified: 23 Apr 2026

    NetworkManager (NM) 0.7.2 does not ensure that the configured Certification Authority (CA) certificate file for a (1) WPA Enterprise or (2) 802.1x network remains present upon a connection attempt, which might allow remote attackers to obtain sensitive information or cause a denial of service (connectivity disruption) by spoofing the identity of a wireless network.

    Published: 8 Dec 2009
    9.3
    Critical

    CVE-2009-3797

    Last Modified: 23 Apr 2026

    Adobe Flash Player 10.x before 10.0.42.34 and Adobe AIR before 1.5.3 might allow attackers to execute arbitrary code via unspecified vectors that trigger memory corruption.

    Published: 8 Dec 2009
    4.4
    Medium

    CVE-2009-4029

    Last Modified: 23 Apr 2026

    The (1) dist or (2) distcheck rules in GNU Automake 1.11.1, 1.10.3, and release branches branch-1-4 through branch-1-9, when producing a distribution tarball for a package that uses Automake, assign insecure permissions (777) to directories in the build tree, which introduces a race condition that allows local users to modify the contents of package files, introduce Trojan horse programs, or conduct other attacks before the build is complete.

    Published: 8 Dec 2009
    7.5
    High

    CVE-2009-4222

    Last Modified: 23 Apr 2026

    phpBazar 2.1.1fix and earlier does not require administrative authentication for admin/admin.php, which allows remote attackers to obtain access to the admin control panel via a direct request.

    Published: 7 Dec 2009
    9.3
    Critical

    CVE-2009-4216

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in funzioni/lib/menulast.php in klinza professional cms 5.0.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the LANG parameter.

    Published: 7 Dec 2009
    7.5
    High

    CVE-2009-4223

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in adm/krgourl.php in KR-Web 1.1b2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.

    Published: 7 Dec 2009