258281
|
- |
|
chad_phillips
|
userprotect
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the User Protect module 5.x before 5.x-1.4 and 6.x before 6.x-1.3, a module for Drupal, allow remote attackers to hijack the authenticati…
|
CWE-352
Origin Validation Error
|
CVE-2009-3922
|
2017-08-17 10:31 |
2009-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258282
|
- |
|
sun
|
virtual_desktop_infrastructure virtualbox
|
The VirtualBox 2.0.8 and 2.0.10 web service in Sun Virtual Desktop Infrastructure (VDI) 3.0 does not require authentication, which allows remote attackers to obtain unspecified access via vectors inv…
|
CWE-287
Improper Authentication
|
CVE-2009-3923
|
2017-08-17 10:31 |
2009-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258283
|
- |
|
raven_software punkbuster
|
soldier_of_fortune_2 punkbuster
|
Buffer overflow in pbsv.dll, as used in Soldier of Fortune II and possibly other applications when Even Balance PunkBuster 1.728 or earlier is enabled, allows remote attackers to cause a denial of se…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3924
|
2017-08-17 10:31 |
2009-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258284
|
- |
|
google
|
chrome
|
Incomplete blacklist vulnerability in browser/download/download_exe.cc in Google Chrome before 3.0.195.32 allows remote attackers to force the download of certain dangerous files via a "Content-Dispo…
|
CWE-20
Improper Input Validation
|
CVE-2009-3931
|
2017-08-17 10:31 |
2009-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258285
|
- |
|
webkit
|
webkit
|
WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service (CPU consumption) via a web page that calls the JavaScript setInterval method, w…
|
CWE-399
Resource Management Errors
|
CVE-2009-3933
|
2017-08-17 10:31 |
2009-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258286
|
- |
|
google
|
chrome
|
The WebFrameLoaderClient::dispatchDidChangeLocationWithinPage function in src/webkit/glue/webframeloaderclient_impl.cc in Google Chrome before 3.0.195.32 allows user-assisted remote attackers to caus…
|
NVD-CWE-Other
|
CVE-2009-3934
|
2017-08-17 10:31 |
2009-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258287
|
- |
|
citrix
|
online_plug-in_for_mac online_plug-in_for_windows receiver_for_iphone
|
Unspecified vulnerability in Citrix Online Plug-in for Windows 11.0.x before 11.0.150 and 11.x before 11.2, Online Plug-in for Mac before 11.0, Receiver for iPhone before 1.0.3, and ICA Java, Mac, UN…
|
CWE-310
Cryptographic Issues
|
CVE-2009-3936
|
2017-08-17 10:31 |
2009-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258288
|
- |
|
poppler
|
poppler
|
Buffer overflow in the ABWOutputDev::endWord function in poppler/ABWOutputDev.cc in Poppler (aka libpoppler) 0.10.6, 0.12.0, and possibly other versions, as used by the Abiword pdftoabw utility, allo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3938
|
2017-08-17 10:31 |
2009-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258289
|
- |
|
joomla
|
joomla\!
|
Unspecified vulnerability in the Front-End Editor in the com_content component in Joomla! before 1.5.15 allows remote authenticated users, with Author privileges, to replace the articles of an arbitr…
|
NVD-CWE-noinfo
|
CVE-2009-3945
|
2017-08-17 10:31 |
2009-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258290
|
- |
|
joomla
|
joomla\!
|
Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
|
CWE-200
Information Exposure
|
CVE-2009-3946
|
2017-08-17 10:31 |
2009-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|