Browse Database

Browsing Vulnerabilities Disclosed in November of 2009

<< Back to Browse
OSVDB IDDisclosure DateTitle
60861 2009-11-30 Mantis view_all_bug_page.php tag_string Parameter XSS
60543 2009-11-30 Haihaisoft Universal Player MYACTIVEX.MyActiveXCtrl.1 ActiveX (MyActiveX.ocx) URL Property Overflow
61116 2009-11-30 RT Session html/Elements/SetupSessionCookie Multiple Method Session Fixation
60569 2009-11-30 Asterisk rtp.c RTP Comfort Noise Payload Remote DoS
60584 2009-11-30 dotDefender on Linux Arbitrary Shell Command Execution CSRF
60611 2009-11-30 Elxis CMS includes/feedcreator.class.php filename Parameter Traversal Arbitrary File Access
60788 2009-11-30 Linux Kernel net/ipv4/ip_fragment.c ip_frag_reasm Function NULL Dereference Remote DoS
60841 2009-11-30 MusicGallery Component for Joomla! index.php id Parameter SQL Injection
60869 2009-11-30 IBM WebSphere Application Server (WAS) Communications Enabled Applications (CEA) Feature Pack Session Identifier Prediction Weakness
61261 2009-11-30 SmartMedia Module for XOOPS folder.php categoryid ID XSS
61262 2009-11-30 Content Module for XOOPS modules/content/index.php id Parameter SQL Injection
63301 2009-11-30 PyForum forumhelper.py Admin Password Reset Backdoor
63298 2009-11-30 Xxasp ShareList.asp SearchCondition Parameter SQL Injection
64032 2009-11-30 Quick News Component for Joomla! index.php newsid Parameter SQL Injection
69925 2009-11-30 IBM Lotus Notes Traveler Unspecified Domino API MIME Type Handling Remote DoS
60581 2009-11-29 SweetRice in _plugin/subscriber/inc/post.php root_dir Parameter Remote File Inclusion
60582 2009-11-29 SweetRice as/lib/news_modify.php root_dir Parameter Remote File Inclusion
60688 2009-11-29 LightNEasy FCKeditor Component config.php Access Restriction Bypass Arbitrary File Upload
60863 2009-11-29 SweetRice as/lib/plugins.php plugin Parameter Traversal Local File Inclusion
60955 2009-11-28 Nebula3 Multiple Unspecified SQL Injections (stable6)
60609 2009-11-28 MuPDF mupdf/pdf_shade4.c Multiple Function PDF File Handling Overflow
60669 2009-11-28 HP Operations Dashboard j2deployer Account Default Password
60670 2009-11-28 HP Operations Manager ovwebusr Default Password
60844 2009-11-28 phpBazar classified.php catid Parameter SQL Injection
61123 2009-11-28 Zen Cart Multiple Directory / File Direct Request Information Disclosure
61244 2009-11-28 Trac Multiple Report Format Permission Bypass Information Disclosure
61339 2009-11-28 PHP unserialize Function Nested Variable Handling DoS
60515 2009-11-27 PEAR-Net_Traceroute Net_Traceroute::traceroute() Method host Parameter Arbitrary Command Execution
60513 2009-11-27 Robo-FTP Unspecified Response Handling Remote Overflow
60518 2009-11-27 LyftenBloggie Component for Joomla! index.php author Parameter SQL Injection
60594 2009-11-27 Micronet SP1910 Network Access Controller loginpages/error_user.shtml msg Parameter XSS
61430 2009-11-27 IBM DB2 Query Compiler, Rewrite, and Optimizer Component Multiple Object Privilege Requirement Handling Unspecified Remote Privilege Escalation
61431 2009-11-27 IBM DB2 Query Compiler, Rewrite, and Optimizer Component Unspecified SQL Query Compliation Remote DoS
60514 2009-11-26 Solaris LDAP Client Configuration Cache Daemon (ldap_cachemgr(1M)) Multiple Unspecified Local DoS
60521 2009-11-26 Ingate Firewall/SIParator SSL / TLS Renegotiation Handshakes MiTM Plaintext Data Injection
60519 2009-11-26 DotNetNuke Search Functionality Unspecified XSS
60517 2009-11-26 GCalendar Component for Joomla! index.php gcid Parameter SQL Injection
60520 2009-11-26 DotNetNuke Install Wizard Remote Information Disclosure
60544 2009-11-26 Ruby on Rails HTML::Tokenizer strip_tags Function XSS
60612 2009-11-26 Eshopbuilde CMS home-f.asp sitebid Parameter SQL Injection

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2012 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use