|
303641
|
- |
|
oracle
|
siebel_option_pack_ie_activex_control
|
The Oracle Siebel Option Pack for IE ActiveX control does not properly initialize memory that is used by the NewBusObj method, which allows remote attackers to execute arbitrary code via a crafted HT…
|
CWE-94
Code Injection
|
CVE-2009-3737
|
2024-11-21 10:08 |
2010-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303642
|
- |
|
oracle
|
opensso_enterprise
|
Unspecified vulnerability in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-3762
|
2024-11-21 10:08 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303643
|
- |
|
oracle
|
opensso_enterprise
|
Unspecified vulnerability in the OpenSSO component in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-3764
|
2024-11-21 10:08 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303644
|
- |
|
oracle
|
opensso_enterprise
|
Unspecified vulnerability in the Access Manager / OpenSSO component in Oracle OpenSSO Enterprise 7.1, 7, 2005Q4, and 8.0 allows remote attackers to affect integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-3763
|
2024-11-21 10:08 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303645
|
- |
|
adobe macromedia
|
flash_player air
|
Unspecified vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory consumption) or po…
|
CWE-399 NVD-CWE-noinfo
Resource Management Errors
|
CVE-2009-3793
|
2024-11-21 10:08 |
2010-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303646
|
3.3 |
LOW
Local
|
noping debian
|
liboping debian_linux
|
liboping 1.3.2 allows users reading arbitrary files upon the local system.
|
CWE-20
Improper Input Validation
|
CVE-2009-3614
|
2024-11-21 10:07 |
2019-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303647
|
3.1 |
LOW
Adjacent
|
redhat
|
enterprise_virtualization_manager
|
In RHEV-M VDC 2.2.0, it was found that the SSL certificate was not verified when using the client-side Red Hat Enterprise Virtualization Manager interface (a Windows Presentation Foundation (WPF) XAM…
|
CWE-295
Improper Certificate Validation
|
CVE-2009-3552
|
2024-11-21 10:07 |
2019-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303648
|
- |
|
vmware
|
hyperic_hq
|
The monitor perl script in the Sybase database plug-in in SpringSource Hyperic HQ before 4.3 allows local users to obtain the database password by listing the process and its arguments.
|
CWE-200
Information Exposure
|
CVE-2009-2899
|
2024-11-21 10:06 |
2012-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303649
|
- |
|
symantec
|
altiris_deployment_solution altiris_notification_server management_platform
|
The Altiris eXpress NS SC Download ActiveX control in AeXNSPkgDLLib.dll, as used in Symantec Altiris Deployment Solution 6.9.x, Notification Server 6.0.x, and Symantec Management Platform 7.0.x expos…
|
NVD-CWE-Other
|
CVE-2009-3028
|
2024-11-21 10:06 |
2011-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303650
|
6.1 |
MEDIUM
Network
|
mantisbt
|
mantisbt
|
MantisBT 1.2.x before 1.2.2 insecurely handles attachments and MIME types. Arbitrary inline attachment rendering could lead to cross-domain scripting or other browser attacks.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2802
|
2024-11-21 10:05 |
2019-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|