Vulnerability Reports

2009

2009/12/15 JVN#00152874:
P forum vulnerable to directory traversal
2009/12/09 JVN#49602378:
SEIL/B1 authentication issue
2009/12/08 JVN#36207497:
Active! mail 2003 cookie disclosure vulnerability
2009/12/08 JVN#85821104:
Active! mail 2003 session ID disclosure vulnerability
2009/12/08 JVN#49083120:
Active! mail 2003 cross-site scripting vulnerability
2009/12/07 JVN#79762947: [Critical]
EC-CUBE information disclosure vulnerability
2009/11/19 JVN#87341298:
Redmine vulnerable to cross-site request forgery
2009/11/19 JVN#01245481:
Redmine vulnerable to cross-site scripting
2009/11/04 JVN#75694913:
Roundcube Webmail vulnerable to cross-site request forgery
2009/11/04 JVN#72974205:
Roundcube Webmail vulnerable to cross-site request forgery
2009/10/28 JVN#13011682:
SEIL/X Series and SEIL/B1 denial of service vulnerability
2009/10/28 JVN#06362164:
SEIL/X Series and SEIL/B1 buffer overflow vulnerability
2009/10/26 JVN#75368899:
Implementations of IPv6 may be vulnerable to denial of service (DoS) attacks
2009/10/20 JVN#33822756:
Canon IT Solutions Inc. ACCESSGUARDIAN vulnerable to cross-site scripting
2009/10/15 JVN#23108985:
Multiple Cybozu products vulnerable to cross-site scripting
2009/10/02 JVN#84396512:
SugarCRM vulnerable to cross-site scripting
2009/09/18 JVN#65914253:
Directory traversal vulnerability in multiple phpspot products
2009/09/18 JVN#53591199:
Cross-site scripting vulnerability in multiple phpspot products
2009/09/17 JVN#00425482:
XF-Section vulnerable to cross-site scripting
2009/09/17 JVN#39157969:
Third-party cookie issue in Opera
2009/09/11 JVN#05857667: [Critical]
Webservice-DIC yoyaku_v41 vulnerable to command injection
2009/09/09 JVN#62211338: [Critical]
Buffer overflow vulnerability in Microsoft Windows
2009/08/27 JVN#68640473:
bingo!CMS core and bingo!CMS vulnerable to cross-site request forgery
2009/08/24 JVN#31035930:
SugarCRM vulnerable to SQL injection
2009/08/21 JVN#20478978:
Site Calendar 'mycaljp' vulnerable to cross-site scripting
2009/08/19 JVN#21388501:
ColdFusion vulnerable to cross-site scripting
2009/08/05 JVN#15267895:
Cross-site request forgery vulnerability in FreeNAS
2009/08/05 JVN#89791790:
Cross-site scripting vulnerability in FreeNAS
2009/07/31 JVN#80436657: [Critical]
Webservice-DIC yoyaku_v41 vulnerable to command injection
2009/07/29 JVN#59748723:
MySQL Connector/J vulnerable to SQL injection
2009/07/24 JVN#29852698:
Cross-site scripting vulnerability in RevoCounter CGI (Animation Counter)
2009/07/14 JVN#31110006:
shiromuku(fs6)DIARY cross-site scripting vulnerability
2009/06/25 JVN#32788272:
PHP-I-BOARD from Let's PHP! vulnerable to directory traversal
2009/06/25 JVN#20219071:
PHP-I-BOARD from Let's PHP! vulnerable to cross-site scripting
2009/06/25 JVN#93827000:
Tree BBS from Let's PHP! vulnerable to cross-site scripting
2009/06/24 JVN#08369659:
Movable Type access restriction bypass vulnerability
2009/06/24 JVN#86472161:
Movable Type cross-site scripting vulnerability
2009/06/19 JVN#12244807:
Cross-site scripting vulnerability in PukiWikiMod from XOOPS Maniac
2009/06/18 JVN#87239696:
iPhone OS denial of service (DoS) vulnerability
2009/06/11 JVN#70858401: [Critical]
Buffer overflow vulnerability in Microsoft Works converters
2009/06/10 JVN#55752635:
Cross-site scripting vulnerability in activeCollab
2009/06/09 JVN#87272440:
Apache Tomcat denial of service (DoS) vulnerability
2009/06/09 JVN#63832775:
Apache Tomcat information disclosure vulnerability
2009/06/08 JVN#20689557:
Predictable session ID vulnerability in Serene Bach
2009/05/29 JVN#70836284:
IMG-BBS from MT312 vulnerable to cross-site scripting
2009/05/29 JVN#01115659:
REP-BBS from MT312 vulnerable to cross-site scripting
2009/05/29 JVN#62527913:
Directory traversal vulnerability in multiple Cisco Systems products
2009/05/22 JVN#57036470:
Cross-site scripting vulnerability in leger (free edition)
2009/05/21 JVN#42927215:
a-News from Appleple vulnerable to cross-site scripting
2009/05/20 JVN#02331156:
HP System Management Homepage vulnerable to cross-site scripting
2009/05/18 JVN#28521500:
Trees from CGI RESCUE vulnerable to cross-site scripting
2009/05/13 JVN#73653977:
Sun GlassFish Enterprise Server and Sun Java System Application Server vulnerable to cross-site scripting
2009/05/11 JVN#03114223:
SQL injection vulnerability in SKIP from SKIP User Group
2009/05/11 JVN#43233160:
Cross-site scripting vulnerability in SKIP from SKIP User Group
2009/04/27 JVN#28020230:
Web Mailer from CGI RESCUE vulnerable to HTTP header injection
2009/04/27 JVN#76370393:
FORM2MAIL from CGI RESCUE allows unauthorized email transmission
2009/04/27 JVN#11396739:
Cross-site scripting vulnerability in MiniBBS from CGI RESCUE
2009/04/27 JVN#36982346:
MiniBBS22 from CGI RESCUE allows unauthorized email transmission
2009/04/24 JVN#97248625:
Movable Type cross-site scripting vulnerability
2009/04/16 JVN#82744714:
Cross-site scripting vulnerability in apricot.php from LovPop.net
2009/04/02 JVN#74747784:
XOOPS Cube Legacy cross-site scripting vulnerability
2009/03/31 JVN#63511247:
Access Analyzer CGI Professional Version vulnerability allows third party to gain administrative privileges
2009/03/16 JVN#23558374:
Cross-site scripting vulnerability in Access Analyzer CGI Standard Version (Ver. 3.x)
2009/03/10 JVN#84899898:
MP Form Mail CGI vulnerability allows third party to gain administrative privileges
2009/02/26 JVN#66905322:
Apache Tomcat information disclosure vulnerability
2009/02/25 JVN#91591874:
PEAK XOOPS piCal cross-site scripting vulnerability
2009/02/23 JVN#16767117:
Buffer overflow vulnerability in ActiveX Control for Sony SNC series network cameras
2009/02/12 JVN#29641290: [Critical]
Becky! Internet Mail buffer overflow vulnerability
2009/02/10 JVN#45184501:
FAST ESP cross-site scripting vulnerability
2009/01/23 JVN#80771386:
Fulltext search CGI vulnerability allows third party to gain administrative privileges