Windows上的Sun Java SE更新22之前的5.0版本和更新17之前的6版本允许远程攻击者借助一个包含有对UNC共享路径名的链接的BMP文件,导致拒绝服务。该路径名是International Color Consortium(ICC)资料文件的路径名,它可能与CVE-2007-2789有关,又称Bug Id 6632445。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2009-3911 | TFTgallery 'settings.php' 跨站脚本攻击漏洞 | |
| CVE-2009-3922 | Drupal User Protect 跨站请求伪造漏洞 | |
| CVE-2009-3921 | Drupal Smartqueue OG模块安全许可和信息泄露漏洞 | |
| CVE-2009-3920 | Drupal NGP COO/CWP Integration模块访问控制和信息泄露漏洞 | |
| CVE-2009-3919 | Drupal NGP COO/CWP Integration模块安全绕过和HTML注入漏洞 | |
| CVE-2009-3918 | Drupal Zoomify模块HTML注入漏洞 | |
| CVE-2009-3917 | Drupal S5 Presentation Player模块HTML注入漏洞 | |
| CVE-2009-3916 | Drupal Node Hierarchy模块跨站脚本漏洞 | |
| CVE-2009-3915 | Drupal Link模块跨站脚本攻击漏洞 | |
| CVE-2009-3914 | Drupal Temporary Invitation模块跨站脚本漏洞 | |
| CVE-2009-3913 | Xerox Fiery WebTools 'summary.php' SQL注入漏洞 | |
| CVE-2009-3912 | TFTgallery 'index.php' 目录遍历漏洞 | |
| CVE-2009-3726 | Linux kernel 资源管理错误漏洞 | |
| CVE-2009-3555 | Apache HTTP Server 信任管理问题漏洞 | |
| CVE-2009-3886 | Sun Java SE "Java Web Start"应用未明安全漏洞 | |
| CVE-2009-3884 | Sun Java SE和OpenJDK 方法"TimeZone.getTimeZone" 信息泄露漏洞 | |
| CVE-2009-3883 | Sun Java SE和OpenJDK 特征"PL&F" 多个未明安全漏洞 | |
| CVE-2009-3882 | Sun Java SE和OpenJDK 应用"Swing" 多个未明安全漏洞 | |
| CVE-2009-3881 | Sun Java SE和OpenJDK "ClassLoader" 权限获得和信息泄露漏洞 | |
| CVE-2009-3880 | Sun Java SE和OpenJDK "Abstract Window Toolkit (AWT)" 访问控制和信息泄露漏洞 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet