|
272251
|
- |
|
debian
|
lintian
|
Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allows remote attackers to execute arbitrary commands via shell metacharacters in filename arguments.
|
CWE-89
SQL Injection
|
CVE-2009-4015
|
2023-11-7 11:04 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272252
|
- |
|
debian
|
lintian
|
Multiple format string vulnerabilities in Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allow remote attackers to have an unspecified impact via vectors involving (1) …
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2009-4014
|
2023-11-7 11:04 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272253
|
- |
|
viewvc
|
viewvc
|
ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.
|
CWE-200
Information Exposure
|
CVE-2010-0004
|
2023-11-7 11:04 |
2010-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272254
|
- |
|
apache
|
tomcat
|
Directory traversal vulnerability in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in an entry in a WAR…
|
CWE-22
Path Traversal
|
CVE-2009-2693
|
2023-11-7 11:04 |
2010-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272255
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-3111. Reason: This candidate is a duplicate of CVE-2009-3111. Notes: All CVE users should reference CVE-2009-3111 instead of…
|
-
|
CVE-2009-4481
|
2023-11-7 11:04 |
2009-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272256
|
- |
|
roman_marxer
|
ganeti
|
Multiple directory traversal vulnerabilities in the iallocator framework in Ganeti 1.2.4 through 1.2.8, 2.0.0 through 2.0.4, and 2.1.0 before 2.1.0~rc2 allow (1) remote attackers to execute arbitrary…
|
CWE-22
Path Traversal
|
CVE-2009-4261
|
2023-11-7 11:04 |
2009-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272257
|
- |
|
linux
|
linux_kernel
|
The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference…
|
CWE-399
Resource Management Errors
|
CVE-2009-4308
|
2023-11-7 11:04 |
2009-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272258
|
- |
|
linux
|
linux_kernel
|
The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a ma…
|
CWE-189
Numeric Errors
|
CVE-2009-4307
|
2023-11-7 11:04 |
2009-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272259
|
- |
|
redhat
|
jboss_enterprise_application_platform
|
Multiple cross-site scripting (XSS) vulnerabilities in the Web Console in the Application Server in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2.0 before 4.2.0.CP08, 4.2…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2405
|
2023-11-7 11:04 |
2009-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272260
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-4214. Reason: This candidate is a duplicate of CVE-2009-4214. Notes: All CVE users should reference CVE-2009-4214 instead of…
|
-
|
CVE-2009-4132
|
2023-11-7 11:04 |
2009-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|