|
310731
|
6.1 |
MEDIUM
Network
|
python-markdown2_project
|
python-markdown2
|
python-markdown2 before 1.0.1.14 has multiple cross-site scripting (XSS) issues.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3724
|
2024-11-21 10:08 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310732
|
8.1 |
HIGH
Network
|
dtc-xen_project
|
dtc-xen
|
dtc-xen 0.5.x before 0.5.4 suffers from a race condition where an attacker could potentially get a bash access as xenXX user on the dom0, and then access a potentially reuse an already opened VPS con…
|
CWE-362
Race Condition
|
CVE-2009-4011
|
2024-11-21 10:08 |
2019-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310733
|
9.8 |
CRITICAL
Network
|
ytnef_project
|
ytnef
|
ytnef has directory traversal
|
CWE-22
Path Traversal
|
CVE-2009-3887
|
2024-11-21 10:08 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310734
|
7.5 |
HIGH
Network
|
sangoma debian
|
asterisk debian_linux
|
asterisk allows calls on prohibited networks
|
CWE-863
Incorrect Authorization
|
CVE-2009-3723
|
2024-11-21 10:08 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310735
|
- |
|
nlnetlabs
|
unbound
|
Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query.
|
CWE-399
Resource Management Errors
|
CVE-2009-4008
|
2024-11-21 10:08 |
2011-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310736
|
- |
|
artifex
|
gpl_ghostscript afpl_ghostscript ghostscript_fonts
|
Off-by-one error in the Ins_MINDEX function in the TrueType bytecode interpreter in Ghostscript before 8.71 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory…
|
CWE-189
Numeric Errors
|
CVE-2009-3743
|
2024-11-21 10:08 |
2010-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310737
|
- |
|
oracle
|
siebel_option_pack_ie_activex_control
|
The Oracle Siebel Option Pack for IE ActiveX control does not properly initialize memory that is used by the NewBusObj method, which allows remote attackers to execute arbitrary code via a crafted HT…
|
CWE-94
Code Injection
|
CVE-2009-3737
|
2024-11-21 10:08 |
2010-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310738
|
- |
|
oracle
|
opensso_enterprise
|
Unspecified vulnerability in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-3762
|
2024-11-21 10:08 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310739
|
- |
|
oracle
|
opensso_enterprise
|
Unspecified vulnerability in the OpenSSO component in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-3764
|
2024-11-21 10:08 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310740
|
- |
|
oracle
|
opensso_enterprise
|
Unspecified vulnerability in the Access Manager / OpenSSO component in Oracle OpenSSO Enterprise 7.1, 7, 2005Q4, and 8.0 allows remote attackers to affect integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-3763
|
2024-11-21 10:08 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|