Vulnerabilities (CVE)

Filter

125017 total CVE
CVE Vendors Products Updated CVSS
CVE-2009-4920 1 Cisco 1 Asa 5580 2010-06-30 7.8
Unspecified vulnerability in CTM on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software 8.1(2) allows remote attackers to cause a denial of service (watchdog traceback) via a large amount of small-packet data, aka Bug ID CSCsu11412.
CVE-2009-4919 1 Cisco 1 Asa 5580 2010-06-30 10.0
Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to have an unspecified impact via long IKE attributes, aka Bug ID CSCsu43121.
CVE-2009-4918 1 Cisco 1 Asa 5580 2010-06-30 7.8
Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allow remote attackers to cause a denial of service (IKE process hang) via malformed NAT-T packets, aka Bug ID CSCsr74439.
CVE-2009-4917 1 Cisco 1 Asa 5580 2010-06-30 7.8
Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (device reload) via a high volume of SIP traffic, aka Bug ID CSCsr65901.
CVE-2009-4916 1 Cisco 1 Asa 5580 2010-06-30 4.0
Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote authenticated users to cause a denial of service (console hang) via a login action during failover replication,...
CVE-2009-4915 1 Cisco 1 Asa 5580 2010-06-30 7.8
Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (device reload) via unknown network traffic, as demonstrated by a...
CVE-2009-4914 1 Cisco 1 Asa 5580 2010-06-30 7.8
Memory leak on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (memory consumption) via Subject Alternative Name fields in an X.509 certificate, aka Bug...
CVE-2009-4913 1 Cisco 1 Asa 5580 2010-06-30 5.0
The IPv6 implementation on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) exposes IP services on the "far side of the box," which might allow remote attackers to bypass intended access restrictions via...
CVE-2009-4912 1 Cisco 1 Asa 5580 2010-06-30 10.0
Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) complete an SSL handshake with an HTTPS client even if this client is unauthorized, which might allow remote attackers to bypass intended access restrictions...
CVE-2009-4911 1 Cisco 1 Asa 5580 2010-06-30 7.8
Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (device crash) via vectors involving SSL VPN and PPPoE transactions, aka...
CVE-2009-4910 1 Cisco 1 Asa 5580 2010-06-30 4.3
Cross-site scripting (XSS) vulnerability in the WebVPN portal on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka...
CVE-2009-1299 1 Pulseaudio 1 Pulseaudio 2010-06-29 6.9
The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.
CVE-2010-2508 1 2daybiz 1 Video Community Portal Script 2010-06-29 7.5
SQL injection vulnerability in user-profile.php in 2daybiz Video Community Portal Script allows remote attackers to execute arbitrary SQL commands via the userid parameter.
CVE-2009-3734 1 S2sys 1 Linear Emerge Access Control System 2010-06-29 5.0
Unspecified vulnerability in the management console in the S2 Security Linear eMerge Access Control System 2.5.x allows remote attackers to cause a denial of service (configuration reset) via a request to a crafted URI.
CVE-2010-2515 1 Dacian Strain 1 Com Jfaq 2010-06-29 6.8
Multiple SQL injection vulnerabilities in index.php in the JFaq (com_jfaq) component 1.2 for Joomla!, when magic_quotes_gpc is disabled, allow (1) remote attackers to execute arbitrary SQL commands via the id parameter, and (2) remote...
CVE-2010-2514 1 Dacian Strain 1 Com Jfaq 2010-06-29 4.3
Cross-site scripting (XSS) vulnerability in the JFaq (com_jfaq) component 1.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the question parameter in an add2 action to index.php.
CVE-2010-2513 1 Harmistechnology 1 Com Jeajaxeventcalendar 2010-06-29 7.5
SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parameter to index.php.
CVE-2010-2512 1 2daybiz 1 Matrimonial Script 2010-06-29 7.5
SQL injection vulnerability in customprofile.php in 2daybiz Matrimonial Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2010-2511 1 2daybiz 1 Multi Level Marketing Software 2010-06-29 7.5
SQL injection vulnerability in viewnews.php in 2daybiz Multi Level Marketing (MLM) Software allows remote attackers to execute arbitrary SQL commands via the nwsid parameter.
CVE-2010-2510 1 2daybiz 1 Web Template Software 2010-06-29 7.5
SQL injection vulnerability in customize.php in 2daybiz Web Template Software allows remote attackers to execute arbitrary SQL commands via the tid parameter.