<?xml version='1.0' encoding='UTF-8'?>
<nvd xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://nvd.nist.gov/feeds/cve/1.2" nvd_xml_version="1.2" pub_date="2009-11-07" xsi:schemaLocation="http://nvd.nist.gov/feeds/cve/1.2 http://nvd.nist.gov/schema/nvdcve.xsd">
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:C/I:N/A:N)" CVSS_base_score="6.3" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="6.9" name="CVE-2009-0022" seq="2009-0022" severity="Medium" type="CVE" published="2009-01-05" CVSS_version="2.0" CVSS_score="6.3" modified="2009-03-13">
        <desc>
            <descript source="cve">Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.</descript>
        </desc>
        <sols>
            <sol source="nvd">Patch Information - http://www.samba.org/samba/history/security.html</sol>
        </sols>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00309.html">FEDORA-2009-0268</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47733">samba-file-system-security-bypass(47733)</ref>
            <ref source="UBUNTU" url="http://www.ubuntulinux.org/support/documentation/usn/usn-702-1">USN-702-1</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021513">1021513</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33118">33118</ref>
            <ref source="CONFIRM" url="http://www.samba.org/samba/security/CVE-2009-0022.html">http://www.samba.org/samba/security/CVE-2009-0022.html</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:042">MDVSA-2009:042</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0017">ADV-2009-0017</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33431">33431</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33392">33392</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33379" adv="1">33379</ref>
            <ref source="OSVDB" url="http://osvdb.org/51152">51152</ref>
            <ref source="MISC" url="http://master.samba.org/samba/ftp/patches/security/samba-3.2.6-CVE-2009-0022.patch">http://master.samba.org/samba/ftp/patches/security/samba-3.2.6-CVE-2009-0022.patch</ref>
        </refs>
        <vuln_soft>
            <prod vendor="samba" name="samba">
                <vers num="3.2.0" />
                <vers num="3.2.1" />
                <vers num="3.2.2" />
                <vers num="3.2.3" />
                <vers num="3.2.4" />
                <vers num="3.2.5" />
                <vers num="3.2.6" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0021" seq="2009-0021" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-08-26">
        <desc>
            <descript source="cve">NTP 4.2.4 before 4.2.4p5 and 4.2.5 before 4.2.5p150 does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature for DSA and ECDSA keys, a similar vulnerability to CVE-2008-5077.</descript>
            <descript source="nvd">Note that versions 4.2.5 before 4.2.5p150 are development versions and not production versions.  Development versions are not included in the CPE configuration for CVEs.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-133A.html">TA09-133A</ref>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2009/0042" adv="1">ADV-2009-0042</ref>
            <ref source="MLIST" url="https://lists.ntp.org/pipermail/announce/2009-January/000055.html">[announce] 20090108 NTP 4.2.4p6 Released</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2009/1297" adv="1">ADV-2009-1297</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021533">1021533</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0046.html">RHSA-2009:0046</ref>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3549">http://support.apple.com/kb/HT3549</ref>
            <ref source="SLACKWARE" url="http://slackware.com/security/viewer.php?l=slackware-security&amp;y=2009&amp;m=slackware-security.531177">SSA:2009-014-03</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35074" adv="1">35074</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34642" adv="1">34642</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33648" adv="1">33648</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33558" adv="1">33558</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33406" adv="1">33406</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00003.html">SUSE-SR:2009:008</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html">SUSE-SR:2009:005</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2009/May/msg00002.html">APPLE-SA-2009-05-12</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ntp" name="ntp">
                <vers num="4.2.0" />
                <vers num="4.2.2" />
                <vers num="4.2.4p1" />
                <vers num="4.2.4p2" />
                <vers num="4.2.4p3" />
                <vers num="4.2.4p4" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0025" seq="2009-0025" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-05-16">
        <desc>
            <descript source="cve">BIND 9.6.0, 9.5.1, 9.5.0, 9.4.3, and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-133A.html">TA09-133A</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00393.html">FEDORA-2009-0350</ref>
            <ref source="CONFIRM" url="https://www.isc.org/node/373">https://www.isc.org/node/373</ref>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2938">https://issues.rpath.com/browse/RPL-2938</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2009/1297">ADV-2009-1297</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2009/0904">ADV-2009-0904</ref>
            <ref source="CONFIRM" url="http://www.vmware.com/security/advisories/VMSA-2009-0004.html">http://www.vmware.com/security/advisories/VMSA-2009-0004.html</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/502322/100/0/threaded">20090401 VMSA-2009-0004 ESX Service Console updates for openssl, bind, and vim</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500207/100/0/threaded">20090120 rPSA-2009-0009-1 bind bind-utils</ref>
            <ref source="CONFIRM" url="http://www.openbsd.org/errata44.html#008_bind">http://www.openbsd.org/errata44.html#008_bind</ref>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0366">ADV-2009-0366</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0043">ADV-2009-0043</ref>
            <ref source="CONFIRM" url="http://wiki.rpath.com/Advisories:rPSA-2009-0009">http://wiki.rpath.com/Advisories:rPSA-2009-0009</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-045.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-045.htm</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3549">http://support.apple.com/kb/HT3549</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-250846-1">250846</ref>
            <ref source="SLACKWARE" url="http://slackware.com/security/viewer.php?l=slackware-security&amp;y=2009&amp;m=slackware-security.540362">SSA:2009-014-02</ref>
            <ref source="FREEBSD" url="http://security.freebsd.org/advisories/FreeBSD-SA-09:04.bind.asc">FreeBSD-SA-09:04</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35074">35074</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33882">33882</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33683">33683</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33559">33559</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33551">33551</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33546">33546</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33494">33494</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2009/May/msg00002.html">APPLE-SA-2009-05-12</ref>
            <ref source="MISC" url="http://groups.google.com/group/comp.protocols.dns.bind/browse_thread/thread/49ef622c8329fd33">http://groups.google.com/group/comp.protocols.dns.bind/browse_thread/thread/49ef622c8329fd33</ref>
        </refs>
        <vuln_soft>
            <prod vendor="isc" name="bind">
                <vers num="4" />
                <vers num="4.9" />
                <vers num="4.9.10" />
                <vers num="4.9.2" />
                <vers num="4.9.3" />
                <vers num="4.9.4" />
                <vers edition="p1" num="4.9.5" />
                <vers num="4.9.6" />
                <vers num="4.9.7" />
                <vers num="4.9.8" />
                <vers num="4.9.9" />
                <vers num="8" />
                <vers num="8.1" />
                <vers num="8.1.1" />
                <vers num="8.1.2" />
                <vers edition="p1" num="8.2" />
                <vers num="8.2.1" />
                <vers edition="p1" num="8.2.2" />
                <vers edition="p2" num="8.2.2" />
                <vers edition="p3" num="8.2.2" />
                <vers edition="p4" num="8.2.2" />
                <vers edition="p5" num="8.2.2" />
                <vers edition="p6" num="8.2.2" />
                <vers edition="p7" num="8.2.2" />
                <vers num="8.2.3" />
                <vers num="8.2.3_t1a" />
                <vers num="8.2.3_t9b" />
                <vers num="8.2.4" />
                <vers num="8.2.5" />
                <vers num="8.2.6" />
                <vers num="8.2.7" />
                <vers num="8.3.0" />
                <vers num="8.3.1" />
                <vers num="8.3.2" />
                <vers num="8.3.3" />
                <vers num="8.3.4" />
                <vers num="8.3.5" />
                <vers num="8.3.6" />
                <vers num="8.4" />
                <vers num="8.4.1" />
                <vers num="8.4.4" />
                <vers num="8.4.5" />
                <vers num="8.4.7" />
                <vers num="9.0" />
                <vers num="9.0.1" />
                <vers num="9.1" />
                <vers num="9.1.1" />
                <vers num="9.1.2" />
                <vers num="9.1.3" />
                <vers num="9.2" />
                <vers num="9.2.0" />
                <vers num="9.2.1" />
                <vers edition="p3" num="9.2.2" />
                <vers num="9.2.3" />
                <vers num="9.2.4" />
                <vers num="9.2.5" />
                <vers num="9.2.6" />
                <vers num="9.2.7" />
                <vers num="9.2.9" />
                <vers num="9.3" />
                <vers num="9.3.0" />
                <vers num="9.3.1" />
                <vers num="9.3.2" />
                <vers num="9.3.3" />
                <vers edition="windows" num="9.3.5-p2-w1" />
                <vers num="9.4" />
                <vers edition="rc1" num="9.4.0" />
                <vers num="9.4.0a1" />
                <vers num="9.4.0a2" />
                <vers num="9.4.0a3" />
                <vers num="9.4.0a4" />
                <vers num="9.4.0a5" />
                <vers num="9.4.0a6" />
                <vers num="9.4.0b1" />
                <vers num="9.4.0b2" />
                <vers num="9.4.0b3" />
                <vers num="9.4.0b4" />
                <vers num="9.4.1" />
                <vers num="9.4.2" />
                <vers num="9.4.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0046" seq="2009-0046" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-28">
        <desc>
            <descript source="cve">Sun GridEngine 5.3 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature for DSA and ECDSA keys, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0045" adv="1">ADV-2009-0045</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="grid_engine">
                <vers edition="beta1" num="5.3" prev="1" />
                <vers edition="beta2" num="5.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0047" seq="2009-0047" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-27">
        <desc>
            <descript source="cve">Gale 0.99 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature for DSA and ECDSA keys, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0046">ADV-2009-0046</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gale" name="gale">
                <vers num="0.15" />
                <vers num="0.15b" />
                <vers num="0.15c" />
                <vers num="0.16" />
                <vers num="0.16a" />
                <vers num="0.17" />
                <vers num="0.17a" />
                <vers num="0.18" />
                <vers num="0.18b" />
                <vers num="0.18c" />
                <vers num="0.19" />
                <vers num="0.19a" />
                <vers num="0.19b" />
                <vers num="0.20a" />
                <vers num="0.21" />
                <vers num="0.90a" />
                <vers num="0.90b" />
                <vers num="0.90c" />
                <vers num="0.91" />
                <vers num="0.91a" />
                <vers num="0.91b" />
                <vers num="0.99" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0048" seq="2009-0048" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-27">
        <desc>
            <descript source="cve">OpenEvidence 1.0.6 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature for DSA and ECDSA keys, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0047" adv="1">ADV-2009-0047</ref>
        </refs>
        <vuln_soft>
            <prod vendor="openevidence" name="openevidence">
                <vers num="1.0.5" />
                <vers num="1.0.6" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0049" seq="2009-0049" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-03-13">
        <desc>
            <descript source="cve">Belgian eID middleware (eidlib) 2.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature for DSA and ECDSA keys, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34029">34029</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00000.html">SUSE-SR:2009:005</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eid" name="eidlib">
                <vers num="2.6.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0050" seq="2009-0050" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-12">
        <desc>
            <descript source="cve">Lasso 2.2.1 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47837">openssl-dsa-verify-security-bypass(47837)</ref>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="lasso" name="lasso">
                <vers num="1.9.9.0" />
                <vers num="2.0.0-1" />
                <vers num="2.2.1-0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0051" seq="2009-0051" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-12">
        <desc>
            <descript source="cve">ZXID 0.29 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47837">openssl-dsa-verify-security-bypass(47837)</ref>
            <ref source="MISC" url="http://www.ocert.org/advisories/ocert-2008-016.html">http://www.ocert.org/advisories/ocert-2008-016.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="zxid" name="zxid">
                <vers num="0.1" />
                <vers num="0.10" />
                <vers num="0.11" />
                <vers num="0.12" />
                <vers num="0.13" />
                <vers num="0.14" />
                <vers num="0.15" />
                <vers num="0.16" />
                <vers num="0.17" />
                <vers num="0.18" />
                <vers num="0.19" />
                <vers num="0.2" />
                <vers num="0.20" />
                <vers num="0.21" />
                <vers num="0.22" />
                <vers num="0.25" />
                <vers num="0.26" />
                <vers num="0.27" />
                <vers num="0.28" />
                <vers num="0.29" prev="1" />
                <vers num="0.3" />
                <vers num="0.4" />
                <vers num="0.5" />
                <vers num="0.6" />
                <vers num="0.7" />
                <vers num="0.8" />
                <vers num="0.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0065" seq="2009-0065" severity="High" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="10.0" modified="2009-08-12">
        <desc>
            <descript source="cve">Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.28-git8 allows remote attackers to have an unknown impact via an FWD-TSN (aka FORWARD-TSN) chunk with a large stream ID.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg01045.html">FEDORA-2009-0816</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=478800">https://bugzilla.redhat.com/show_bug.cgi?id=478800</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2009/2193">ADV-2009-2193</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-751-1">USN-751-1</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1022698">1022698</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33113">33113</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-1055.html">RHSA-2009:1055</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0331.html">RHSA-2009:0331</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0053.html">RHSA-2009:0053</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/05/1">[oss-security] 20090105 CVE request: kernel: sctp: memory overflow when FWD-TSN chunk is received with bad stream ID</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0029" adv="1">ADV-2009-0029</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1794">DSA-1794</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1787">DSA-1787</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1749">DSA-1749</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-114.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-114.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/36191">36191</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35394">35394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35390">35390</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35174">35174</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35011">35011</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34981">34981</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34762">34762</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34680">34680</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34394">34394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34252">34252</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33858">33858</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33854">33854</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33674">33674</ref>
            <ref source="REDHAT" url="http://rhn.redhat.com/errata/RHSA-2009-0264.html">RHSA-2009:0264</ref>
            <ref source="CONFIRM" url="http://patchwork.ozlabs.org/patch/15024/">http://patchwork.ozlabs.org/patch/15024/</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html">SUSE-SA:2009:031</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html">SUSE-SA:2009:030</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.html">SUSE-SA:2009:010</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01832118">HPSBNS02449</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01832118">HPSBNS02449</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=9fcb95a105758b81ef0131cd18e2db5149f13e95">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=9fcb95a105758b81ef0131cd18e2db5149f13e95</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers num="2.6.23" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.23_rc1" />
                <vers num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24.7" />
                <vers num="2.6.24_rc1" />
                <vers num="2.6.24_rc4" />
                <vers num="2.6.24_rc5" />
                <vers edition="" num="2.6.25" />
                <vers edition=":x86_64" num="2.6.25" />
                <vers edition="" num="2.6.25.1" />
                <vers edition=":x86_64" num="2.6.25.1" />
                <vers edition="" num="2.6.25.10" />
                <vers edition=":x86_64" num="2.6.25.10" />
                <vers edition="" num="2.6.25.11" />
                <vers edition=":x86_64" num="2.6.25.11" />
                <vers edition="" num="2.6.25.12" />
                <vers edition=":x86_64" num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.15" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers edition="" num="2.6.25.2" />
                <vers edition=":x86_64" num="2.6.25.2" />
                <vers edition="" num="2.6.25.3" />
                <vers edition=":x86_64" num="2.6.25.3" />
                <vers edition="" num="2.6.25.4" />
                <vers edition=":x86_64" num="2.6.25.4" />
                <vers edition="" num="2.6.25.5" />
                <vers edition=":x86_64" num="2.6.25.5" />
                <vers edition="" num="2.6.25.6" />
                <vers edition=":x86_64" num="2.6.25.6" />
                <vers edition="" num="2.6.25.7" />
                <vers edition=":x86_64" num="2.6.25.7" />
                <vers edition="" num="2.6.25.8" />
                <vers edition=":x86_64" num="2.6.25.8" />
                <vers edition="" num="2.6.25.9" />
                <vers edition=":x86_64" num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.27" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="10.0" name="CVE-2009-0066" seq="2009-0066" severity="High" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="7.6" modified="2009-01-08">
        <desc>
            <descript source="cve">Multiple unspecified vulnerabilities in Intel system software for Trusted Execution Technology (TXT) allow attackers to bypass intended loader integrity protections, as demonstrated by exploitation of tboot.  NOTE: as of 20090107, the only disclosure is a vague pre-advisory with no actionable information. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33119">33119</ref>
            <ref source="MISC" url="http://theinvisiblethings.blogspot.com/2009/01/attacking-intel-trusted-execution.html">http://theinvisiblethings.blogspot.com/2009/01/attacking-intel-trusted-execution.html</ref>
            <ref source="MISC" url="http://invisiblethingslab.com/press/itl-press-2009-01.pdf">http://invisiblethingslab.com/press/itl-press-2009-01.pdf</ref>
            <ref source="MISC" url="http://blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html#Wojtczuk">http://blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html#Wojtczuk</ref>
        </refs>
        <vuln_soft>
            <prod vendor="intel" name="trusted_execution_technology">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0068" seq="2009-0068" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="6.8" modified="2009-02-10">
        <desc>
            <descript source="cve">Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" url="https://bugs.freedesktop.org/show_bug.cgi?id=19377">https://bugs.freedesktop.org/show_bug.cgi?id=19377</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33137">33137</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/06/1">[oss-security] 20090106 Fwd: Using xdg-open in /etc/mailcap causes hole in Firefox (Demonstration/Exploit included)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="freedesktop" name="xdg-utils">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0069" seq="2009-0069" severity="Medium" type="CVE" published="2009-01-07" CVSS_version="2.0" CVSS_score="4.9" modified="2009-01-24">
        <desc>
            <descript source="cve">Unspecified vulnerability in the nfs4rename_persistent_fh function in the NFS 4 (aka NFSv4) client in the kernel in Sun Solaris 10 and OpenSolaris before snv_102 allows local users to cause a denial of service (recursive mutex_enter and panic) via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-139466-02-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-139466-02-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47750">solaris-nfs4client-dos(47750)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021519">1021519</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33128">33128</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0030">ADV-2009-0030</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-248566-1" adv="1">248566</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33361" adv="1">33361</ref>
            <ref source="MLIST" url="http://mail.opensolaris.org/pipermail/onnv-notify/2008-October/015342.html">[onnv-notify] 20081021 6300710 recursive mutex_enter in nfs4rename_persistent_fh()</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_01" />
                <vers edition=":sparc" num="snv_01" />
                <vers edition=":x86" num="snv_01" />
                <vers edition="" num="snv_02" />
                <vers edition=":x86" num="snv_02" />
                <vers edition=":sparc" num="snv_02" />
                <vers edition="" num="snv_03" />
                <vers edition=":sparc" num="snv_03" />
                <vers edition=":x86" num="snv_03" />
                <vers edition="" num="snv_04" />
                <vers edition=":sparc" num="snv_04" />
                <vers edition=":x86" num="snv_04" />
                <vers edition="" num="snv_05" />
                <vers edition=":sparc" num="snv_05" />
                <vers edition=":x86" num="snv_05" />
                <vers edition="" num="snv_06" />
                <vers edition=":x86" num="snv_06" />
                <vers edition=":sparc" num="snv_06" />
                <vers edition="" num="snv_07" />
                <vers edition=":sparc" num="snv_07" />
                <vers edition=":x86" num="snv_07" />
                <vers edition="" num="snv_08" />
                <vers edition=":sparc" num="snv_08" />
                <vers edition=":x86" num="snv_08" />
                <vers edition="" num="snv_09" />
                <vers edition=":sparc" num="snv_09" />
                <vers edition=":x86" num="snv_09" />
                <vers edition="" num="snv_10" />
                <vers edition=":x86" num="snv_10" />
                <vers edition=":sparc" num="snv_10" />
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" prev="1" />
                <vers edition=":x86" num="snv_101" prev="1" />
                <vers edition=":sparc" num="snv_101" prev="1" />
                <vers edition="" num="snv_104" />
                <vers edition=":sparc" num="snv_104" />
                <vers edition="" num="snv_11" />
                <vers edition=":sparc" num="snv_11" />
                <vers edition=":x86" num="snv_11" />
                <vers edition="" num="snv_12" />
                <vers edition=":x86" num="snv_12" />
                <vers edition=":sparc" num="snv_12" />
                <vers edition="" num="snv_13" />
                <vers edition=":sparc" num="snv_13" />
                <vers edition=":x86" num="snv_13" />
                <vers edition="" num="snv_14" />
                <vers edition=":x86" num="snv_14" />
                <vers edition=":sparc" num="snv_14" />
                <vers edition="" num="snv_15" />
                <vers edition=":x86" num="snv_15" />
                <vers edition=":sparc" num="snv_15" />
                <vers edition="" num="snv_16" />
                <vers edition=":sparc" num="snv_16" />
                <vers edition=":x86" num="snv_16" />
                <vers edition="" num="snv_17" />
                <vers edition=":sparc" num="snv_17" />
                <vers edition=":x86" num="snv_17" />
                <vers edition="" num="snv_18" />
                <vers edition=":x86" num="snv_18" />
                <vers edition=":sparc" num="snv_18" />
                <vers edition="" num="snv_19" />
                <vers edition=":x86" num="snv_19" />
                <vers edition=":sparc" num="snv_19" />
                <vers edition="" num="snv_20" />
                <vers edition=":x86" num="snv_20" />
                <vers edition=":sparc" num="snv_20" />
                <vers edition="" num="snv_21" />
                <vers edition=":x86" num="snv_21" />
                <vers edition=":sparc" num="snv_21" />
                <vers edition="" num="snv_22" />
                <vers edition=":sparc" num="snv_22" />
                <vers edition=":x86" num="snv_22" />
                <vers edition="" num="snv_23" />
                <vers edition=":sparc" num="snv_23" />
                <vers edition=":x86" num="snv_23" />
                <vers edition="" num="snv_24" />
                <vers edition=":sparc" num="snv_24" />
                <vers edition=":x86" num="snv_24" />
                <vers edition="" num="snv_25" />
                <vers edition=":sparc" num="snv_25" />
                <vers edition=":x86" num="snv_25" />
                <vers edition="" num="snv_26" />
                <vers edition=":x86" num="snv_26" />
                <vers edition=":sparc" num="snv_26" />
                <vers edition="" num="snv_27" />
                <vers edition=":x86" num="snv_27" />
                <vers edition=":sparc" num="snv_27" />
                <vers edition="" num="snv_28" />
                <vers edition=":sparc" num="snv_28" />
                <vers edition=":x86" num="snv_28" />
                <vers edition="" num="snv_29" />
                <vers edition=":sparc" num="snv_29" />
                <vers edition=":x86" num="snv_29" />
                <vers edition="" num="snv_30" />
                <vers edition=":x86" num="snv_30" />
                <vers edition=":sparc" num="snv_30" />
                <vers edition="" num="snv_31" />
                <vers edition=":sparc" num="snv_31" />
                <vers edition=":x86" num="snv_31" />
                <vers edition="" num="snv_32" />
                <vers edition=":sparc" num="snv_32" />
                <vers edition=":x86" num="snv_32" />
                <vers edition="" num="snv_33" />
                <vers edition=":sparc" num="snv_33" />
                <vers edition=":x86" num="snv_33" />
                <vers edition="" num="snv_34" />
                <vers edition=":sparc" num="snv_34" />
                <vers edition=":x86" num="snv_34" />
                <vers edition="" num="snv_35" />
                <vers edition=":sparc" num="snv_35" />
                <vers edition=":x86" num="snv_35" />
                <vers edition="" num="snv_36" />
                <vers edition=":sparc" num="snv_36" />
                <vers edition=":x86" num="snv_36" />
                <vers edition="" num="snv_37" />
                <vers edition=":x86" num="snv_37" />
                <vers edition=":sparc" num="snv_37" />
                <vers edition="" num="snv_38" />
                <vers edition=":x86" num="snv_38" />
                <vers edition=":sparc" num="snv_38" />
                <vers edition="" num="snv_39" />
                <vers edition=":sparc" num="snv_39" />
                <vers edition=":x86" num="snv_39" />
                <vers edition="" num="snv_40" />
                <vers edition=":x86" num="snv_40" />
                <vers edition=":sparc" num="snv_40" />
                <vers edition="" num="snv_41" />
                <vers edition=":sparc" num="snv_41" />
                <vers edition=":x86" num="snv_41" />
                <vers edition="" num="snv_42" />
                <vers edition=":sparc" num="snv_42" />
                <vers edition=":x86" num="snv_42" />
                <vers edition="" num="snv_43" />
                <vers edition=":sparc" num="snv_43" />
                <vers edition=":x86" num="snv_43" />
                <vers edition="" num="snv_44" />
                <vers edition=":sparc" num="snv_44" />
                <vers edition=":x86" num="snv_44" />
                <vers edition="" num="snv_45" />
                <vers edition=":sparc" num="snv_45" />
                <vers edition=":x86" num="snv_45" />
                <vers edition="" num="snv_46" />
                <vers edition=":x86" num="snv_46" />
                <vers edition=":sparc" num="snv_46" />
                <vers edition="" num="snv_47" />
                <vers edition=":sparc" num="snv_47" />
                <vers edition=":x86" num="snv_47" />
                <vers edition="" num="snv_48" />
                <vers edition=":sparc" num="snv_48" />
                <vers edition=":x86" num="snv_48" />
                <vers edition="" num="snv_49" />
                <vers edition=":sparc" num="snv_49" />
                <vers edition=":x86" num="snv_49" />
                <vers edition="" num="snv_50" />
                <vers edition=":sparc" num="snv_50" />
                <vers edition=":x86" num="snv_50" />
                <vers edition="" num="snv_51" />
                <vers edition=":sparc" num="snv_51" />
                <vers edition=":x86" num="snv_51" />
                <vers edition="" num="snv_52" />
                <vers edition=":sparc" num="snv_52" />
                <vers edition=":x86" num="snv_52" />
                <vers edition="" num="snv_53" />
                <vers edition=":sparc" num="snv_53" />
                <vers edition=":x86" num="snv_53" />
                <vers edition="" num="snv_54" />
                <vers edition=":x86" num="snv_54" />
                <vers edition=":sparc" num="snv_54" />
                <vers edition="" num="snv_55" />
                <vers edition=":sparc" num="snv_55" />
                <vers edition=":x86" num="snv_55" />
                <vers edition="" num="snv_56" />
                <vers edition=":x86" num="snv_56" />
                <vers edition=":sparc" num="snv_56" />
                <vers edition="" num="snv_57" />
                <vers edition=":sparc" num="snv_57" />
                <vers edition=":x86" num="snv_57" />
                <vers edition="" num="snv_58" />
                <vers edition=":x86" num="snv_58" />
                <vers edition=":sparc" num="snv_58" />
                <vers edition="" num="snv_59" />
                <vers edition=":sparc" num="snv_59" />
                <vers edition=":x86" num="snv_59" />
                <vers edition="" num="snv_60" />
                <vers edition=":x86" num="snv_60" />
                <vers edition=":sparc" num="snv_60" />
                <vers edition="" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0043" seq="2009-0043" severity="High" type="CVE" published="2009-01-08" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-12">
        <desc>
            <descript source="cve">The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which allows remote attackers to execute arbitrary commands via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=196148">https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=196148</ref>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33161">33161</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/499857/100/0/threaded">20090107 CA20090107-01: CA Service Metric Analysis and CA Service Level Management smmsnmpd Arbitrary Command Execution Vulnerability</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0053">ADV-2009-0053</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4887">4887</ref>
            <ref source="CONFIRM" url="http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/07.aspx" adv="1">http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/07.aspx</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ca" name="service_level_management">
                <vers num="3.5" />
            </prod>
            <prod vendor="ca" name="service_metric_analysis">
                <vers num="r11.0" />
                <vers edition="sp1" num="r11.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0070" seq="2009-0070" severity="High" type="CVE" published="2009-01-08" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Integer signedness error in Apple Safari allows remote attackers to read the contents of arbitrary memory locations, cause a denial of service (application crash), and probably have unspecified other impact via the array index of the arguments array in a JavaScript function, possibly a related issue to CVE-2008-2307.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48214">safari-array-memory-disclosure(48214)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7673">7673</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="safari">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:N/A:P)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2009-0071" seq="2009-0071" severity="Low" type="CVE" published="2009-01-08" CVSS_version="2.0" CVSS_score="2.6" modified="2009-03-25">
        <desc>
            <descript source="cve">Mozilla Firefox 3.0.5 and earlier 3.0.x versions, when designMode is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a certain (a) replaceChild or (b) removeChild call, followed by a (1) queryCommandValue, (2) queryCommandState, or (3) queryCommandIndeterm call.  NOTE: it was later reported that 3.0.6 and 3.0.7 are also affected.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.mozilla.org/show_bug.cgi?id=472507">https://bugzilla.mozilla.org/show_bug.cgi?id=472507</ref>
            <ref source="CONFIRM" url="https://bugzilla.mozilla.org/show_bug.cgi?id=456727">https://bugzilla.mozilla.org/show_bug.cgi?id=456727</ref>
            <ref source="CONFIRM" url="https://bugzilla.mozilla.org/show_bug.cgi?id=448329">https://bugzilla.mozilla.org/show_bug.cgi?id=448329</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33154">33154</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/8219">8219</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/8091">8091</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2009-01/0224.html">20090107 Re: Firefox 3.0.5 remote vulnerability via queryCommandState</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2009-01/0223.html">20090107 Re: Firefox 3.0.5 remote vulnerability via queryCommandState</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2009-01/0220.html">20090107 Firefox 3.0.5 remote vulnerability via queryCommandState</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="firefox">
                <vers edition="alpha" num="3.0" />
                <vers edition="beta2" num="3.0" />
                <vers edition="beta5" num="3.0" />
                <vers num="3.0.1" />
                <vers num="3.0.2" />
                <vers num="3.0.3" />
                <vers num="3.0.4" />
                <vers num="3.0.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0072" seq="2009-0072" severity="Medium" type="CVE" published="2009-01-08" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-09">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 6.0 through 8.0 beta2 allows remote attackers to cause a denial of service (application crash) via an onload=screen[""] attribute value in a BODY element.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47788">ie-javascript-screen-dos(47788)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33149">33149</ref>
            <ref source="MISC" url="http://skypher.com/index.php/2009/01/07/msie-screen-null-ptr-dos-details/">http://skypher.com/index.php/2009/01/07/msie-screen-null-ptr-dos-details/</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="internet_explorer">
                <vers edition="sp1" num="6" />
                <vers edition="sp2" num="6" />
                <vers num="7" />
                <vers edition="beta1" num="8" />
                <vers edition="beta2" num="8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0103" seq="2009-0103" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">Multiple PHP remote file inclusion vulnerabilities in playSMS 0.9.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) apps_path[plug] parameter to plugin/gateway/gnokii/init.php, the (2) apps_path[themes] parameter to plugin/themes/default/init.php, and the (3) apps_path[libs] parameter to lib/function.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33138">33138</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7687">7687</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4888">4888</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33386" adv="1">33386</ref>
        </refs>
        <vuln_soft>
            <prod vendor="playsms" name="playsms">
                <vers num="0.9.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0104" seq="2009-0104" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in EZpack 4.2b2 allows remote attackers to execute arbitrary SQL commands via the qType parameter in a webboard prog action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33131">33131</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7680">7680</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4890">4890</ref>
        </refs>
        <vuln_soft>
            <prod vendor="se-ed" name="ezpack">
                <vers edition="beta2" num="4.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0105" seq="2009-0105" severity="Medium" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in EZpack 4.2b2 allows remote attackers to inject arbitrary web script or HTML via the mdfd parameter in a prog action.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33131">33131</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7680">7680</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4890">4890</ref>
        </refs>
        <vuln_soft>
            <prod vendor="se-ed" name="ezpack">
                <vers edition="beta2" num="4.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0106" seq="2009-0106" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-04-10">
        <desc>
            <descript source="cve">SQL injection vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands via the user_id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/43264">phpauctions-profile-sql-injection(43264)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33115">33115</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33331" adv="1">33331</ref>
            <ref source="OSVDB" url="http://osvdb.org/51144">51144</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/7672">7672</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpauctions" name="phpauctions">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0107" seq="2009-0107" severity="Medium" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-09">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to inject arbitrary web script or HTML via the user_id parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33115">33115</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33331" adv="1">33331</ref>
            <ref source="OSVDB" url="http://osvdb.org/51145">51145</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/7672">7672</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpauctions" name="phpauctions">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0108" seq="2009-0108" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">PHPAuctions (aka PHPAuctionSystem) allows remote attackers to bypass authentication and gain administrative access via modified (1) PHPAUCTION_RM_ID, (2) PHPAUCTION_RM_NAME, (3) PHPAUCTION_RM_USERNAME, and (4) PHPAUCTION_RM_EMAIL cookies.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33120">33120</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7674">7674</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4891">4891</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33331" adv="1">33331</ref>
            <ref source="OSVDB" url="http://osvdb.org/51146">51146</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpauctions" name="phpauctions">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0109" seq="2009-0109" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in RiotPix 0.61 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33132">33132</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7682">7682</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4892">4892</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33395" adv="1">33395</ref>
        </refs>
        <vuln_soft>
            <prod vendor="riotpix" name="riotpix">
                <vers num=".05" />
                <vers num="0.5" />
                <vers edition="beta" num="0.51" />
                <vers num="0.52" />
                <vers num="0.60" />
                <vers num="0.61" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0110" seq="2009-0110" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in read.php in RiotPix 0.61 and earlier allows remote attackers to execute arbitrary SQL commands via the forumid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33129">33129</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7679">7679</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4893">4893</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33395" adv="1">33395</ref>
        </refs>
        <vuln_soft>
            <prod vendor="riotpix" name="riotpix">
                <vers num=".05" />
                <vers num="0.5" />
                <vers edition="beta" num="0.51" />
                <vers num="0.52" />
                <vers num="0.60" />
                <vers num="0.61" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0111" seq="2009-0111" severity="High" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33135">33135</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7683">7683</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4894">4894</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33393" adv="1">33393</ref>
        </refs>
        <vuln_soft>
            <prod vendor="goople_cms" name="goople_cms">
                <vers num="1.8.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0112" seq="2009-0112" severity="Medium" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-29">
        <desc>
            <descript source="cve">Cross-site request forgery (CSRF) vulnerability in admin/agent_edit.asp in PollPro 3.0 allows remote attackers to create or modify accounts as administrators via the username, password, and name parameters.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47754">pollpro-unspecified-csrf(47754)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4895">4895</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33319" adv="1">33319</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=123117044713213&amp;w=2">20090103 PollPro 3.0 XSRF VuLn</ref>
        </refs>
        <vuln_soft>
            <prod vendor="expinion" name="poll_pro">
                <vers num="3.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0113" seq="2009-0113" severity="Medium" type="CVE" published="2009-01-09" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! 1.5.8 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the X_CMS_LIBRARY_PATH HTTP header.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33143">33143</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7691">7691</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4896">4896</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33377" adv="1">33377</ref>
        </refs>
        <vuln_soft>
            <prod vendor="joomla" name="xstandard">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2009-0024" seq="2009-0024" severity="High" type="CVE" published="2009-01-13" CVSS_version="2.0" CVSS_score="7.2" modified="2009-01-13">
        <desc>
            <descript source="cve">The sys_remap_file_pages function in mm/fremap.c in the Linux kernel before 2.6.24.1 allows local users to cause a denial of service or gain privileges via unspecified vectors, related to the vm_file structure member, and the mmap_region and do_munmap functions.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33211">33211</ref>
            <ref source="CONFIRM" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.24.1">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.24.1</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/1">[oss-security] 20090112 CVE-2009-0024 kernel: local privilege escalation in sys_remap_file_pages</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.24.y.git;a=commit;h=8a459e44ad837018ea5c34a9efe8eb4ad27ded26">http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.24.y.git;a=commit;h=8a459e44ad837018ea5c34a9efe8eb4ad27ded26</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers num="2.6.0" />
                <vers num="2.6.1" />
                <vers num="2.6.10" />
                <vers num="2.6.11" />
                <vers num="2.6.11.1" />
                <vers num="2.6.11.10" />
                <vers num="2.6.11.11" />
                <vers num="2.6.11.12" />
                <vers num="2.6.11.2" />
                <vers num="2.6.11.3" />
                <vers num="2.6.11.4" />
                <vers num="2.6.11.5" />
                <vers num="2.6.11.6" />
                <vers num="2.6.11.7" />
                <vers num="2.6.11.8" />
                <vers num="2.6.11.9" />
                <vers num="2.6.12" />
                <vers num="2.6.12.1" />
                <vers num="2.6.12.2" />
                <vers num="2.6.12.3" />
                <vers num="2.6.12.4" />
                <vers num="2.6.12.5" />
                <vers num="2.6.12.6" />
                <vers num="2.6.13" />
                <vers num="2.6.13.1" />
                <vers num="2.6.13.2" />
                <vers num="2.6.13.3" />
                <vers num="2.6.13.4" />
                <vers num="2.6.13.5" />
                <vers num="2.6.14" />
                <vers num="2.6.14.1" />
                <vers num="2.6.14.2" />
                <vers num="2.6.14.3" />
                <vers num="2.6.14.4" />
                <vers num="2.6.14.5" />
                <vers num="2.6.14.6" />
                <vers num="2.6.14.7" />
                <vers num="2.6.15" />
                <vers num="2.6.15.1" />
                <vers num="2.6.15.2" />
                <vers num="2.6.15.3" />
                <vers num="2.6.15.4" />
                <vers num="2.6.15.5" />
                <vers num="2.6.15.6" />
                <vers num="2.6.15.7" />
                <vers num="2.6.16" />
                <vers num="2.6.16.1" />
                <vers num="2.6.16.10" />
                <vers num="2.6.16.11" />
                <vers num="2.6.16.12" />
                <vers num="2.6.16.13" />
                <vers num="2.6.16.14" />
                <vers num="2.6.16.15" />
                <vers num="2.6.16.16" />
                <vers num="2.6.16.17" />
                <vers num="2.6.16.18" />
                <vers num="2.6.16.19" />
                <vers num="2.6.16.2" />
                <vers num="2.6.16.20" />
                <vers num="2.6.16.21" />
                <vers num="2.6.16.22" />
                <vers num="2.6.16.23" />
                <vers num="2.6.16.24" />
                <vers num="2.6.16.25" />
                <vers num="2.6.16.26" />
                <vers num="2.6.16.27" />
                <vers num="2.6.16.28" />
                <vers num="2.6.16.29" />
                <vers num="2.6.16.3" />
                <vers num="2.6.16.30" />
                <vers num="2.6.16.31" />
                <vers num="2.6.16.32" />
                <vers num="2.6.16.33" />
                <vers num="2.6.16.34" />
                <vers num="2.6.16.35" />
                <vers num="2.6.16.36" />
                <vers num="2.6.16.37" />
                <vers num="2.6.16.38" />
                <vers num="2.6.16.39" />
                <vers num="2.6.16.4" />
                <vers num="2.6.16.40" />
                <vers num="2.6.16.41" />
                <vers num="2.6.16.42" />
                <vers num="2.6.16.43" />
                <vers num="2.6.16.44" />
                <vers num="2.6.16.45" />
                <vers num="2.6.16.46" />
                <vers num="2.6.16.47" />
                <vers num="2.6.16.48" />
                <vers num="2.6.16.49" />
                <vers num="2.6.16.5" />
                <vers num="2.6.16.50" />
                <vers num="2.6.16.51" />
                <vers num="2.6.16.52" />
                <vers num="2.6.16.53" />
                <vers num="2.6.16.54" />
                <vers num="2.6.16.55" />
                <vers num="2.6.16.56" />
                <vers num="2.6.16.57" />
                <vers num="2.6.16.58" />
                <vers num="2.6.16.59" />
                <vers num="2.6.16.6" />
                <vers num="2.6.16.60" />
                <vers num="2.6.16.61" />
                <vers num="2.6.16.62" />
                <vers num="2.6.16.7" />
                <vers num="2.6.16.8" />
                <vers num="2.6.16.9" />
                <vers num="2.6.17" />
                <vers num="2.6.17.1" />
                <vers num="2.6.17.10" />
                <vers num="2.6.17.11" />
                <vers num="2.6.17.12" />
                <vers num="2.6.17.13" />
                <vers num="2.6.17.14" />
                <vers num="2.6.17.2" />
                <vers num="2.6.17.3" />
                <vers num="2.6.17.4" />
                <vers num="2.6.17.5" />
                <vers num="2.6.17.6" />
                <vers num="2.6.17.7" />
                <vers num="2.6.17.8" />
                <vers num="2.6.17.9" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.18.1" />
                <vers num="2.6.18.2" />
                <vers num="2.6.18.3" />
                <vers num="2.6.18.4" />
                <vers num="2.6.18.5" />
                <vers num="2.6.18.6" />
                <vers num="2.6.18.7" />
                <vers num="2.6.18.8" />
                <vers num="2.6.19" />
                <vers num="2.6.19.1" />
                <vers num="2.6.19.2" />
                <vers num="2.6.19.3" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.2" />
                <vers num="2.6.20" />
                <vers num="2.6.20.1" />
                <vers num="2.6.20.10" />
                <vers num="2.6.20.11" />
                <vers num="2.6.20.12" />
                <vers num="2.6.20.13" />
                <vers num="2.6.20.14" />
                <vers num="2.6.20.15" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.2" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.20.3" />
                <vers num="2.6.20.4" />
                <vers num="2.6.20.5" />
                <vers num="2.6.20.6" />
                <vers num="2.6.20.7" />
                <vers num="2.6.20.8" />
                <vers num="2.6.20.9" />
                <vers num="2.6.21" />
                <vers num="2.6.21.1" />
                <vers num="2.6.21.2" />
                <vers num="2.6.21.3" />
                <vers num="2.6.21.4" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.16" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.3" />
                <vers num="2.6.22.4" />
                <vers num="2.6.22.5" />
                <vers num="2.6.22.6" />
                <vers num="2.6.22.7" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers edition="rc1" num="2.6.23" />
                <vers edition="rc2" num="2.6.23" />
                <vers num="2.6.23.1" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.14" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.2" />
                <vers num="2.6.23.3" />
                <vers num="2.6.23.4" />
                <vers num="2.6.23.5" />
                <vers num="2.6.23.6" />
                <vers num="2.6.23.7" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.24" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0041" seq="2009-0041" severity="Medium" type="CVE" published="2009-01-14" CVSS_version="2.0" CVSS_score="5.0" modified="2009-05-12">
        <desc>
            <descript source="cve">IAX2 in Asterisk Open Source 1.2.x before 1.2.31, 1.4.x before 1.4.23-rc4, and 1.6.x before 1.6.0.3-rc2; Business Edition A.x.x, B.x.x before B.2.5.7, C.1.x.x before C.1.10.4, and C.2.x.x before C.2.1.2.1; and s800i 1.2.x before 1.3.0 responds differently to a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.</descript>
            <descript source="nvd">Vendor Advisory: http://downloads.digium.com/pub/security/AST-2009-001.html</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33174">33174</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021549">1021549</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/499884/100/0/threaded">20090108 AST-2009-001: Information leak in IAX2 authentication</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0063">ADV-2009-0063</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4910">4910</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200905-01.xml">GLSA-200905-01</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34982">34982</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33453">33453</ref>
            <ref source="CONFIRM" url="http://downloads.digium.com/pub/security/AST-2009-001.html">http://downloads.digium.com/pub/security/AST-2009-001.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="asterisk" name="asterisk_business_edition">
                <vers num="a" />
                <vers num="b.1.3.2" />
                <vers num="b.1.3.3" />
                <vers num="b.2.2.0" />
                <vers num="b.2.2.1" />
                <vers num="b.2.3.1" />
                <vers num="b.2.3.2" />
                <vers num="b.2.3.3" />
                <vers num="b.2.3.4" />
                <vers num="b.2.3.5" />
                <vers num="b.2.3.6" />
                <vers num="b.2.5.0" />
                <vers num="b.2.5.1" />
                <vers num="b.2.5.2" prev="1" />
                <vers num="b.2.5.3" />
                <vers edition="beta7" num="c.1.0" prev="1" />
                <vers edition="beta8" num="c.1.0" prev="1" />
            </prod>
            <prod vendor="asterisk" name="open_source">
                <vers edition="beta1" num="1.2.0" />
                <vers edition="beta2" num="1.2.0" />
                <vers edition="rc1" num="1.2.0" />
                <vers edition="rc2" num="1.2.0" />
                <vers num="1.2.0beta1" />
                <vers num="1.2.0beta2" />
                <vers num="1.2.1" />
                <vers edition="netsec" num="1.2.10" />
                <vers edition="netsec" num="1.2.11" />
                <vers edition="netsec" num="1.2.12" />
                <vers edition="netsec" num="1.2.12.1" />
                <vers edition="netsec" num="1.2.13" />
                <vers edition="netsec" num="1.2.14" />
                <vers edition="netsec" num="1.2.15" />
                <vers edition="netsec" num="1.2.16" />
                <vers edition="netsec" num="1.2.17" />
                <vers edition="netsec" num="1.2.18" />
                <vers edition="netsec" num="1.2.19" />
                <vers edition="netsec" num="1.2.2" />
                <vers edition="netsec" num="1.2.20" />
                <vers edition="netsec" num="1.2.21" />
                <vers edition="netsec" num="1.2.21.1" />
                <vers edition="netsec" num="1.2.22" />
                <vers edition="netsec" num="1.2.23" />
                <vers edition="netsec" num="1.2.24" />
                <vers edition="netsec" num="1.2.25" />
                <vers edition="netsec" num="1.2.26" />
                <vers edition="netsec" num="1.2.26.1" />
                <vers edition="netsec" num="1.2.26.2" />
                <vers num="1.2.27" />
                <vers num="1.2.28" />
                <vers num="1.2.29" />
                <vers edition="netsec" num="1.2.3" />
                <vers num="1.2.30" />
                <vers num="1.2.30.2" />
                <vers num="1.2.30.3" />
                <vers num="1.2.30.4" prev="1" />
                <vers edition="beta2" num="1.4.0" />
                <vers edition="beta3" num="1.4.0" />
                <vers edition="beta4" num="1.4.0" />
                <vers num="1.4.1" />
                <vers num="1.4.10" />
                <vers num="1.4.10.1" />
                <vers num="1.4.11" />
                <vers num="1.4.12" />
                <vers num="1.4.12.1" />
                <vers num="1.4.13" />
                <vers num="1.4.14" />
                <vers num="1.4.15" />
                <vers num="1.4.16" />
                <vers num="1.4.16.1" />
                <vers num="1.4.16.2" />
                <vers num="1.4.17" />
                <vers num="1.4.18" />
                <vers num="1.4.18.1" />
                <vers edition="rc1" num="1.4.19" />
                <vers edition="rc2" num="1.4.19" />
                <vers edition="rc3" num="1.4.19" />
                <vers edition="rc4" num="1.4.19" />
                <vers num="1.4.19.1" />
                <vers num="1.4.19.2" />
                <vers num="1.4.2" />
                <vers edition="rc1" num="1.4.20" />
                <vers edition="rc2" num="1.4.20" />
                <vers edition="rc3" num="1.4.20" />
                <vers edition="rc1" num="1.4.21" />
                <vers edition="rc2" num="1.4.21" />
                <vers num="1.4.21.1" />
                <vers num="1.4.21.2" />
                <vers edition="rc3" num="1.4.22" />
                <vers edition="rc4" num="1.4.22" />
                <vers num="1.4.22.1" />
                <vers num="1.4.22.2" />
                <vers edition="rc1" num="1.4.23" prev="1" />
                <vers edition="rc2" num="1.4.23" prev="1" />
                <vers edition="rc3" num="1.4.23" prev="1" />
                <vers num="1.4.3" />
                <vers num="1.4.4" />
                <vers num="1.4.5" />
                <vers num="1.4.6" />
                <vers num="1.4.7" />
                <vers num="1.4.7.1" />
                <vers num="1.4.8" />
                <vers num="1.4.9" />
                <vers num="1.4_revision_95946" />
                <vers num="1.4beta" />
                <vers edition="beta1" num="1.6.0" />
                <vers edition="beta2" num="1.6.0" />
                <vers edition="beta3" num="1.6.0" />
                <vers edition="beta4" num="1.6.0" />
                <vers edition="beta5" num="1.6.0" />
                <vers edition="beta7" num="1.6.0" />
                <vers edition="beta7.1" num="1.6.0" />
                <vers edition="beta8" num="1.6.0" />
                <vers edition="beta9" num="1.6.0" />
                <vers edition="rc4" num="1.6.0" />
                <vers edition="rc5" num="1.6.0" />
                <vers edition="rc6" num="1.6.0" />
                <vers num="1.6.0.1" />
                <vers num="1.6.0.2" />
                <vers edition="rc1" num="1.6.0.3" prev="1" />
            </prod>
            <prod vendor="asterisk" name="s800i_appliance">
                <vers num="1.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0119" seq="2009-0119" severity="High" type="CVE" published="2009-01-14" CVSS_version="2.0" CVSS_score="10.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Buffer overflow in Microsoft Windows XP SP3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .chm file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33204">33204</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7720">7720</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4912">4912</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="windows_xp">
                <vers edition="sp3" num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2009-0120" seq="2009-0120" severity="High" type="CVE" published="2009-01-14" CVSS_version="2.0" CVSS_score="7.8" modified="2009-01-29">
        <desc>
            <descript source="cve">The IBM WebSphere DataPower XML Security Gateway XS40 with firmware 3.6.1.5 allows remote attackers to cause a denial of service (device reboot) by sending data over an established SSL connection, as demonstrated by the abc\r\n\r\n string data.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021547">1021547</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33169">33169</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/499870/100/0/threaded">20090108 [IBM Datapower XS40] Denial of Service</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0111">ADV-2009-0111</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4911">4911</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_datapower_xml_security_gateway_xs40">
                <vers num="3.6.1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0121" seq="2009-0121" severity="High" type="CVE" published="2009-01-14" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-15">
        <desc>
            <descript source="cve">SQL injection vulnerability in frontpage.php in Goople CMS 1.8.2 allows remote attackers to execute arbitrary SQL commands via the password parameter.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33393" adv="1">33393</ref>
        </refs>
        <vuln_soft>
            <prod vendor="goople_cms" name="goople_cms">
                <vers num="1.8.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2009-0029" seq="2009-0029" severity="High" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="7.2" modified="2009-06-20">
        <desc>
            <descript source="cve">The ABI in the Linux kernel 2.6.28 and earlier on s390, powerpc, sparc64, and mips 64-bit platforms requires that a 32-bit argument in a 64-bit register was properly sign extended when sent from a user-mode application, but cannot verify this, which allows local users to cause a denial of service (crash) or possibly gain privileges via a crafted system call.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg01045.html">FEDORA-2009-0816</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479969">https://bugzilla.redhat.com/show_bug.cgi?id=479969</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33275">33275</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:135">MDVSA-2009:135</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1794">DSA-1794</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1787">DSA-1787</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1749">DSA-1749</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35011">35011</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34981">34981</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34394">34394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33674">33674</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33477" adv="1">33477</ref>
            <ref source="MLIST" url="http://marc.info/?l=linux-kernel&amp;m=123155111608910&amp;w=2">[linux-kernel] 20090110 Re: [PATCH -v7][RFC]: mutex: implement adaptive spinning</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.html">SUSE-SA:2009:010</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers num="2.6.23" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.23_rc1" />
                <vers num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24.7" />
                <vers num="2.6.24_rc1" />
                <vers num="2.6.24_rc4" />
                <vers num="2.6.24_rc5" />
                <vers edition="" num="2.6.25" />
                <vers edition=":x86_64" num="2.6.25" />
                <vers edition="" num="2.6.25.1" />
                <vers edition=":x86_64" num="2.6.25.1" />
                <vers edition="" num="2.6.25.10" />
                <vers edition=":x86_64" num="2.6.25.10" />
                <vers edition="" num="2.6.25.11" />
                <vers edition=":x86_64" num="2.6.25.11" />
                <vers edition="" num="2.6.25.12" />
                <vers edition=":x86_64" num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.15" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers edition="" num="2.6.25.2" />
                <vers edition=":x86_64" num="2.6.25.2" />
                <vers edition="" num="2.6.25.3" />
                <vers edition=":x86_64" num="2.6.25.3" />
                <vers edition="" num="2.6.25.4" />
                <vers edition=":x86_64" num="2.6.25.4" />
                <vers edition="" num="2.6.25.5" />
                <vers edition=":x86_64" num="2.6.25.5" />
                <vers edition="" num="2.6.25.6" />
                <vers edition=":x86_64" num="2.6.25.6" />
                <vers edition="" num="2.6.25.7" />
                <vers edition=":x86_64" num="2.6.25.7" />
                <vers edition="" num="2.6.25.8" />
                <vers edition=":x86_64" num="2.6.25.8" />
                <vers edition="" num="2.6.25.9" />
                <vers edition=":x86_64" num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.27" />
                <vers num="2.6.28" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0122" seq="2009-0122" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="6.9" modified="2009-01-31">
        <desc>
            <descript source="cve">hplip.postinst in HP Linux Imaging and Printing (HPLIP) 2.7.7 and 2.8.2 on Ubuntu allows local users to change the ownership of arbitrary files via unspecified manipulations in advance of an HPLIP installation or upgrade by an administrator, related to the product's attempt to correct the ownership of its configuration files within home directories.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33249">33249</ref>
            <ref source="CONFIRM" url="https://launchpad.net/bugs/191299">https://launchpad.net/bugs/191299</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-708-1">USN-708-1</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33539">33539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hp" name="hplip">
                <vers num="2.7.7" />
                <vers num="2.8.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:N/A:N)" CVSS_base_score="7.1" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.9" name="CVE-2009-0123" seq="2009-0123" severity="High" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="7.1" modified="2009-01-22">
        <desc>
            <descript source="cve">Unspecified vulnerability in Apple Safari on Mac OS X 10.5 and Windows allows remote attackers to read arbitrary files on a client machine via vectors related to the association of Safari with the (1) feed, (2) feeds, and (3) feedsearch URL types for RSS feeds.  NOTE: as of 20090114, the only disclosure is a vague pre-advisory. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47917">safari-rss-feed-info-disclosure(47917)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021581">1021581</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33234">33234</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33458">33458</ref>
            <ref source="MISC" url="http://isc.sans.org/diary.html?storyid=5689">http://isc.sans.org/diary.html?storyid=5689</ref>
            <ref source="MISC" url="http://brian.mastenbrook.net/display/27">http://brian.mastenbrook.net/display/27</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="safari">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0124" seq="2009-0124" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-06">
        <desc>
            <descript source="cve">The tqsl_verifyDataBlock function in openssl_cert.cpp in American Radio Relay League (ARRL) tqsllib 2.0 does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00557.html">FEDORA-2009-0543</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479650">https://bugzilla.redhat.com/show_bug.cgi?id=479650</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33543">33543</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511509">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511509</ref>
        </refs>
        <vuln_soft>
            <prod vendor="arrl" name="tqsllib">
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0125" seq="2009-0125" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-10">
        <desc>
            <descript source="cve">** DISPUTED **  NOTE: this issue has been disputed by the upstream vendor. nasl/nasl_crypto2.c in the Nessus Attack Scripting Language library (aka libnasl) 2.2.11 does not properly check the return value from the OpenSSL DSA_do_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.  NOTE: the upstream vendor has disputed this issue, stating "while we do misuse this function (this is a bug), it has absolutely no security ramification."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479655">https://bugzilla.redhat.com/show_bug.cgi?id=479655</ref>
            <ref source="VIM" url="http://www.attrition.org/pipermail/vim/2009-January/002133.html">20090120 CVE-2009-0125 (fwd)</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00000.html">SUSE-SR:2009:003</ref>
            <ref source="CONFIRM" url="http://cvs.fedoraproject.org/viewvc/rpms/libnasl/F-10/libnasl.spec?r1=1.16&amp;r2=1.17">http://cvs.fedoraproject.org/viewvc/rpms/libnasl/F-10/libnasl.spec?r1=1.16&amp;r2=1.17</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511517">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511517</ref>
        </refs>
        <vuln_soft>
            <prod vendor="finkproject" name="libnasl">
                <vers num="2.2.11" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0126" seq="2009-0126" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-03-06">
        <desc>
            <descript source="cve">The decrypt_public function in lib/crypt.cpp in the client in Berkeley Open Infrastructure for Network Computing (BOINC) 6.2.14 and 6.4.5 does not check the return value from the OpenSSL RSA_public_decrypt function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-February/msg00034.html">FEDORA-2009-0578</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479664">https://bugzilla.redhat.com/show_bug.cgi?id=479664</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33828">33828</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33806">33806</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00000.html">SUSE-SR:2009:003</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511521">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511521</ref>
            <ref source="CONFIRM" url="http://boinc.berkeley.edu/trac/ticket/823" adv="1">http://boinc.berkeley.edu/trac/ticket/823</ref>
            <ref source="CONFIRM" url="http://boinc.berkeley.edu/trac/changeset/16883">http://boinc.berkeley.edu/trac/changeset/16883</ref>
        </refs>
        <vuln_soft>
            <prod vendor="berkeley" name="boinc_client">
                <vers num="6.2.14" />
                <vers num="6.4.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0127" seq="2009-0127" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-16">
        <desc>
            <descript source="cve">** DISPUTED ** M2Crypto does not properly check the return value from the OpenSSL EVP_VerifyFinal, DSA_verify, ECDSA_verify, DSA_do_verify, and ECDSA_do_verify functions, which might allow remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.  NOTE: a Linux vendor disputes the relevance of this report to the M2Crypto product because "these functions are not used anywhere in m2crypto."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="https://bugzilla.redhat.com/show_bug.cgi?id=479676">https://bugzilla.redhat.com/show_bug.cgi?id=479676</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511515">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511515</ref>
        </refs>
        <vuln_soft>
            <prod vendor="heikkitoivonen" name="m2crypto">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0128" seq="2009-0128" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-16">
        <desc>
            <descript source="cve">plugins/crypto/openssl/crypto_openssl.c in Simple Linux Utility for Resource Management (aka SLURM or slurm-llnl) does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511511">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511511</ref>
        </refs>
        <vuln_soft>
            <prod vendor="llnl" name="slurm">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0129" seq="2009-0129" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-16">
        <desc>
            <descript source="cve">libcrypt-openssl-dsa-perl does not properly check the return value from the OpenSSL DSA_verify and DSA_do_verify functions, which might allow remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511519">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511519</ref>
        </refs>
        <vuln_soft>
            <prod vendor="perl-openssl" name="libcrypt-openssl-dsa-perl">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0130" seq="2009-0130" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-16">
        <desc>
            <descript source="cve">** DISPUTED ** lib/crypto/c_src/crypto_drv.c in erlang does not properly check the return value from the OpenSSL DSA_do_verify function, which might allow remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.  NOTE: a package maintainer disputes this issue, reporting that there is a proper check within the only code that uses the applicable part of crypto_drv.c, and thus "this report is invalid."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/12/4">[oss-security] 20090112 CVE Request -- tsqllib, slurm-llnl, libnasl, libcrypt-openssl-dsa-perl, erlang, boinc-client, m2crypto</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511520">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=511520</ref>
        </refs>
        <vuln_soft>
            <prod vendor="erlang" name="erlang">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0131" seq="2009-0131" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="4.9" modified="2009-02-05">
        <desc>
            <descript source="cve">The UFS implementation in the kernel in Sun OpenSolaris snv_29 through snv_90 allows local users to cause a denial of service (panic) via the single posix_fallocate test in the SUSv3 POSIX test suite, related to an F_ALLOCSP fcntl call.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021600">1021600</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33267">33267</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-239188-1">239188</ref>
            <ref source="CONFIRM" url="http://bugs.opensolaris.org/view_bug.do?bug_id=6711995">http://bugs.opensolaris.org/view_bug.do?bug_id=6711995</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_29" />
                <vers edition=":x86" num="snv_29" />
                <vers edition=":sparc" num="snv_29" />
                <vers edition="" num="snv_30" />
                <vers edition=":x86" num="snv_30" />
                <vers edition=":sparc" num="snv_30" />
                <vers edition="" num="snv_31" />
                <vers edition=":sparc" num="snv_31" />
                <vers edition=":x86" num="snv_31" />
                <vers edition="" num="snv_32" />
                <vers edition=":sparc" num="snv_32" />
                <vers edition=":x86" num="snv_32" />
                <vers edition="" num="snv_33" />
                <vers edition=":sparc" num="snv_33" />
                <vers edition=":x86" num="snv_33" />
                <vers edition="" num="snv_34" />
                <vers edition=":sparc" num="snv_34" />
                <vers edition=":x86" num="snv_34" />
                <vers edition="" num="snv_35" />
                <vers edition=":sparc" num="snv_35" />
                <vers edition=":x86" num="snv_35" />
                <vers edition="" num="snv_36" />
                <vers edition=":sparc" num="snv_36" />
                <vers edition=":x86" num="snv_36" />
                <vers edition="" num="snv_37" />
                <vers edition=":x86" num="snv_37" />
                <vers edition=":sparc" num="snv_37" />
                <vers edition="" num="snv_38" />
                <vers edition=":x86" num="snv_38" />
                <vers edition=":sparc" num="snv_38" />
                <vers edition="" num="snv_39" />
                <vers edition=":x86" num="snv_39" />
                <vers edition=":sparc" num="snv_39" />
                <vers edition="" num="snv_40" />
                <vers edition=":x86" num="snv_40" />
                <vers edition=":sparc" num="snv_40" />
                <vers edition="" num="snv_41" />
                <vers edition=":sparc" num="snv_41" />
                <vers edition=":x86" num="snv_41" />
                <vers edition="" num="snv_42" />
                <vers edition=":sparc" num="snv_42" />
                <vers edition=":x86" num="snv_42" />
                <vers edition="" num="snv_43" />
                <vers edition=":sparc" num="snv_43" />
                <vers edition=":x86" num="snv_43" />
                <vers edition="" num="snv_44" />
                <vers edition=":sparc" num="snv_44" />
                <vers edition=":x86" num="snv_44" />
                <vers edition="" num="snv_45" />
                <vers edition=":sparc" num="snv_45" />
                <vers edition=":x86" num="snv_45" />
                <vers edition="" num="snv_46" />
                <vers edition=":x86" num="snv_46" />
                <vers edition=":sparc" num="snv_46" />
                <vers edition="" num="snv_47" />
                <vers edition=":sparc" num="snv_47" />
                <vers edition=":x86" num="snv_47" />
                <vers edition="" num="snv_48" />
                <vers edition=":sparc" num="snv_48" />
                <vers edition=":x86" num="snv_48" />
                <vers edition="" num="snv_49" />
                <vers edition=":x86" num="snv_49" />
                <vers edition=":sparc" num="snv_49" />
                <vers edition="" num="snv_50" />
                <vers edition=":sparc" num="snv_50" />
                <vers edition=":x86" num="snv_50" />
                <vers edition="" num="snv_51" />
                <vers edition=":x86" num="snv_51" />
                <vers edition=":sparc" num="snv_51" />
                <vers edition="" num="snv_52" />
                <vers edition=":sparc" num="snv_52" />
                <vers edition=":x86" num="snv_52" />
                <vers edition="" num="snv_53" />
                <vers edition=":sparc" num="snv_53" />
                <vers edition=":x86" num="snv_53" />
                <vers edition="" num="snv_54" />
                <vers edition=":sparc" num="snv_54" />
                <vers edition=":x86" num="snv_54" />
                <vers edition="" num="snv_55" />
                <vers edition=":sparc" num="snv_55" />
                <vers edition=":x86" num="snv_55" />
                <vers edition="" num="snv_56" />
                <vers edition=":x86" num="snv_56" />
                <vers edition=":sparc" num="snv_56" />
                <vers edition="" num="snv_57" />
                <vers edition=":sparc" num="snv_57" />
                <vers edition=":x86" num="snv_57" />
                <vers edition="" num="snv_58" />
                <vers edition=":x86" num="snv_58" />
                <vers edition=":sparc" num="snv_58" />
                <vers edition="" num="snv_59" />
                <vers edition=":sparc" num="snv_59" />
                <vers edition=":x86" num="snv_59" />
                <vers edition="" num="snv_60" />
                <vers edition=":x86" num="snv_60" />
                <vers edition=":sparc" num="snv_60" />
                <vers edition="" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0132" seq="2009-0132" severity="Medium" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="4.9" modified="2009-01-31">
        <desc>
            <descript source="cve">Integer overflow in the aio_suspend function in Sun Solaris 8 through 10 and OpenSolaris, when 32-bit mode is enabled, allows local users to cause a denial of service (panic) via a large integer value in the second argument (aka nent argument).</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33188">33188</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-117350-59-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-117350-59-1</ref>
            <ref source="MISC" url="http://www.trapkit.de/advisories/TKADV2009-001.txt">http://www.trapkit.de/advisories/TKADV2009-001.txt</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021553">1021553</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0099">ADV-2009-0099</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-247986-1" adv="1">247986</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33516">33516</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition=":sparc" num="" />
                <vers edition=":x86" num="" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
                <vers edition="" num="8" />
                <vers edition=":x86" num="8" />
                <vers edition=":sparc" num="8" />
                <vers edition="" num="9" />
                <vers edition=":x86" num="9" />
                <vers edition=":sparc" num="9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0133" seq="2009-0133" severity="High" type="CVE" published="2009-01-15" CVSS_version="2.0" CVSS_score="10.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary code via a .hhp file with a long "Index file" field, possibly a related issue to CVE-2006-0564.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7727">7727</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4914">4914</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="html_help_workshop">
                <vers num="4.74" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0134" seq="2009-0134" severity="High" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Insecure method vulnerability in the EasyGrid.SGCtrl.32 ActiveX control in EasyGrid.ocx 1.0.0.1 in AAA EasyGrid ActiveX 3.51 allows remote attackers to create and overwrite arbitrary files via the (1) DoSaveFile or (2) DoSaveHtmlFile method.  NOTE: vector 1 could be leveraged for code execution by creating executable files in Startup folders or by accessing files using hcp:// URLs.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47946">easygrid-activex-dosavefile-file-overwrite(47946)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33272">33272</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7779">7779</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4913">4913</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33537" adv="1">33537</ref>
        </refs>
        <vuln_soft>
            <prod vendor="share2" name="easy_grid_control">
                <vers num="3.51" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0135" seq="2009-0135" severity="High" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="9.3" modified="2009-04-02">
        <desc>
            <descript source="cve">Multiple integer overflows in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow remote attackers to execute arbitrary code via an Audible Audio (.aa) file with a large (1) nlen or (2) vlen Tag value, each of which triggers a heap-based buffer overflow.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00708.html">FEDORA-2009-0715</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479946">https://bugzilla.redhat.com/show_bug.cgi?id=479946</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479560">https://bugzilla.redhat.com/show_bug.cgi?id=479560</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-739-1">USN-739-1</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021558">1021558</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33210">33210</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/499984/100/0/threaded">20090111 [TKADV2009-002] Amarok Integer Overflow and Unchecked Allocation Vulnerabilities</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:030">MDVSA-2009:030</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0100" adv="1">ADV-2009-0100</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1706">DSA-1706</ref>
            <ref source="CONFIRM" url="http://websvn.kde.org/?view=rev&amp;revision=908415">http://websvn.kde.org/?view=rev&amp;revision=908415</ref>
            <ref source="CONFIRM" url="http://websvn.kde.org/?view=rev&amp;revision=908401">http://websvn.kde.org/?view=rev&amp;revision=908401</ref>
            <ref source="CONFIRM" url="http://websvn.kde.org/?view=rev&amp;revision=908391">http://websvn.kde.org/?view=rev&amp;revision=908391</ref>
            <ref source="MISC" url="http://trapkit.de/advisories/TKADV2009-002.txt">http://trapkit.de/advisories/TKADV2009-002.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4915">4915</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200903-34.xml">GLSA-200903-34</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34407">34407</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34315">34315</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33819">33819</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33640">33640</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33522">33522</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33505" adv="1">33505</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/14/2">[oss-security] 20090114 CVE Request -- amarok</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00000.html">SUSE-SR:2009:003</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=254896">http://bugs.gentoo.org/show_bug.cgi?id=254896</ref>
            <ref source="CONFIRM" url="http://amarok.kde.org/en/releases/2.0.1.1" adv="1">http://amarok.kde.org/en/releases/2.0.1.1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="amarok" name="amarok">
                <vers num="1.4.10" />
                <vers num="2.0" />
                <vers num="2.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0136" seq="2009-0136" severity="High" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="9.3" modified="2009-04-02">
        <desc>
            <descript source="cve">Multiple array index errors in the Audible::Tag::readTag function in metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via an Audible Audio (.aa) file with a crafted (1) nlen or (2) vlen Tag value, each of which can lead to an invalid pointer dereference, or the writing of a 0x00 byte to an arbitrary memory location, after an allocation failure.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00708.html">FEDORA-2009-0715</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479946">https://bugzilla.redhat.com/show_bug.cgi?id=479946</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479560">https://bugzilla.redhat.com/show_bug.cgi?id=479560</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-739-1">USN-739-1</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021558">1021558</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33210">33210</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/499984/100/0/threaded">20090111 [TKADV2009-002] Amarok Integer Overflow and Unchecked Allocation Vulnerabilities</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:030">MDVSA-2009:030</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0100" adv="1">ADV-2009-0100</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1706">DSA-1706</ref>
            <ref source="CONFIRM" url="http://websvn.kde.org/?view=rev&amp;revision=908415">http://websvn.kde.org/?view=rev&amp;revision=908415</ref>
            <ref source="CONFIRM" url="http://websvn.kde.org/?view=rev&amp;revision=908401">http://websvn.kde.org/?view=rev&amp;revision=908401</ref>
            <ref source="CONFIRM" url="http://websvn.kde.org/?view=rev&amp;revision=908391">http://websvn.kde.org/?view=rev&amp;revision=908391</ref>
            <ref source="MISC" url="http://trapkit.de/advisories/TKADV2009-002.txt">http://trapkit.de/advisories/TKADV2009-002.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4915">4915</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200903-34.xml">GLSA-200903-34</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34407">34407</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34315">34315</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33819">33819</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33640">33640</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33522">33522</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33505" adv="1">33505</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/14/2">[oss-security] 20090114 CVE Request -- amarok</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00000.html">SUSE-SR:2009:003</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=254896">http://bugs.gentoo.org/show_bug.cgi?id=254896</ref>
            <ref source="CONFIRM" url="http://amarok.kde.org/en/releases/2.0.1.1" adv="1">http://amarok.kde.org/en/releases/2.0.1.1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="amarok" name="amarok">
                <vers num="1.4.10" />
                <vers num="2.0" />
                <vers num="2.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0053" seq="2009-0053" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="4.3" modified="2009-02-05">
        <desc>
            <descript source="cve">PXE Encryption in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, and 6.5 before 6.5.0.2; and Cisco IronPort PostX 6.2.1 before 6.2.1.1 and 6.2.2 before 6.2.2.3; allows remote attackers to obtain the decryption key via unspecified vectors, related to a "logic error."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33268">33268</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0140">ADV-2009-0140</ref>
            <ref source="CISCO" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080a5c4f7.shtml" adv="1">20090114 IronPort Encryption Appliance / PostX and PXE Encryption Vulnerabilities</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021593">1021593</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33479">33479</ref>
            <ref source="OSVDB" url="http://osvdb.org/51395">51395</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="ironport_encryption_appliance">
                <vers num="6.2.4" />
                <vers num="6.2.4.1" />
                <vers num="6.2.5" />
                <vers num="6.2.6" />
                <vers num="6.2.7" />
                <vers num="6.2.7.1" />
                <vers num="6.2.7.2" />
                <vers num="6.2.7.3" />
                <vers num="6.2.7.4" />
                <vers num="6.2.7.5" />
                <vers num="6.2.7.6" />
                <vers num="6.3" />
                <vers num="6.3.0.1" />
                <vers num="6.3.0.2" />
                <vers num="6.3.0.3" />
                <vers num="6.5" />
                <vers num="6.5.0.1" />
            </prod>
            <prod vendor="cisco" name="ironport_postx">
                <vers num="6.2.1" />
                <vers num="6.2.2" />
                <vers num="6.2.2.1" />
                <vers num="6.2.2.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0054" seq="2009-0054" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="4.3" modified="2009-02-05">
        <desc>
            <descript source="cve">PXE Encryption in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, and 6.5 before 6.5.0.2; and Cisco IronPort PostX 6.2.1 before 6.2.1.1 and 6.2.2 before 6.2.2.3; allows remote attackers to capture credentials by tricking a user into reading a modified or crafted e-mail message.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33268">33268</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0140">ADV-2009-0140</ref>
            <ref source="CISCO" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080a5c4f7.shtml" adv="1">20090114 IronPort Encryption Appliance / PostX and PXE Encryption Vulnerabilities</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021593">1021593</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33479">33479</ref>
            <ref source="OSVDB" url="http://osvdb.org/51396">51396</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="ironport_encryption_appliance">
                <vers num="6.2.4" />
                <vers num="6.2.4.1" />
                <vers num="6.2.5" />
                <vers num="6.2.6" />
                <vers num="6.2.7" />
                <vers num="6.2.7.1" />
                <vers num="6.2.7.2" />
                <vers num="6.2.7.3" />
                <vers num="6.2.7.4" />
                <vers num="6.2.7.5" />
                <vers num="6.2.7.6" />
                <vers num="6.3" />
                <vers num="6.3.0.1" />
                <vers num="6.3.0.2" />
                <vers num="6.3.0.3" />
                <vers num="6.5" />
                <vers num="6.5.0.1" />
            </prod>
            <prod vendor="cisco" name="ironport_postx">
                <vers num="6.2.1" />
                <vers num="6.2.2" />
                <vers num="6.2.2.1" />
                <vers num="6.2.2.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0055" seq="2009-0055" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="6.8" modified="2009-02-05">
        <desc>
            <descript source="cve">Cross-site request forgery (CSRF) vulnerability in the administration interface in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, and 6.5 before 6.5.0.2; and Cisco IronPort PostX 6.2.1 before 6.2.1.1 and 6.2.2 before 6.2.2.3; allows remote attackers to modify appliance preferences as arbitrary users via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33268">33268</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0140">ADV-2009-0140</ref>
            <ref source="CISCO" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080a5c4f7.shtml" adv="1">20090114 IronPort Encryption Appliance / PostX and PXE Encryption Vulnerabilities</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021594">1021594</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33479">33479</ref>
            <ref source="OSVDB" url="http://osvdb.org/51397">51397</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="ironport_encryption_appliance">
                <vers num="6.2.4" />
                <vers num="6.2.4.1" />
                <vers num="6.2.5" />
                <vers num="6.2.6" />
                <vers num="6.2.7" />
                <vers num="6.2.7.1" />
                <vers num="6.2.7.2" />
                <vers num="6.2.7.3" />
                <vers num="6.2.7.4" />
                <vers num="6.2.7.5" />
                <vers num="6.2.7.6" />
                <vers num="6.3" />
                <vers num="6.3.0.1" />
                <vers num="6.3.0.2" />
                <vers num="6.3.0.3" />
                <vers num="6.5" />
                <vers num="6.5.0.1" />
            </prod>
            <prod vendor="cisco" name="ironport_postx">
                <vers num="6.2.1" />
                <vers num="6.2.2" />
                <vers num="6.2.2.1" />
                <vers num="6.2.2.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0056" seq="2009-0056" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="6.8" modified="2009-02-05">
        <desc>
            <descript source="cve">Cross-site request forgery (CSRF) vulnerability in the administration interface in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, and 6.5 before 6.5.0.2; and Cisco IronPort PostX 6.2.1 before 6.2.1.1 and 6.2.2 before 6.2.2.3; allows remote attackers to execute commands and modify appliance preferences as arbitrary users via a logout action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33268">33268</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0140">ADV-2009-0140</ref>
            <ref source="CISCO" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080a5c4f7.shtml" adv="1">20090114 IronPort Encryption Appliance / PostX and PXE Encryption Vulnerabilities</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021594">1021594</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33479">33479</ref>
            <ref source="OSVDB" url="http://osvdb.org/51398">51398</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="ironport_encryption_appliance">
                <vers num="6.2.4" />
                <vers num="6.2.4.1" />
                <vers num="6.2.5" />
                <vers num="6.2.6" />
                <vers num="6.2.7" />
                <vers num="6.2.7.1" />
                <vers num="6.2.7.2" />
                <vers num="6.2.7.3" />
                <vers num="6.2.7.4" />
                <vers num="6.2.7.5" />
                <vers num="6.2.7.6" />
                <vers num="6.3" />
                <vers num="6.3.0.1" />
                <vers num="6.3.0.2" />
                <vers num="6.3.0.3" />
                <vers num="6.5" />
                <vers num="6.5.0.1" />
            </prod>
            <prod vendor="cisco" name="ironport_postx">
                <vers num="6.2.1" />
                <vers num="6.2.2" />
                <vers num="6.2.2.1" />
                <vers num="6.2.2.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.7" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="6.9" name="CVE-2009-0167" seq="2009-0167" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="4.7" modified="2009-03-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in lpadmin in Sun Solaris 10 and OpenSolaris snv_61 through snv_106 allows local users to cause a denial of service via unspecified vectors, related to enumeration of "wrong printers," aka a "Temporary file vulnerability."</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-139390-01-1" adv="1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-139390-01-1</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021601">1021601</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33269">33269</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0155">ADV-2009-0155</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-026.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-026.htm</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-249306-1" adv="1">249306</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33705">33705</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33488">33488</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6175">oval:org.mitre.oval:def:6175</ref>
            <ref source="MISC" url="http://opensolaris.org/os/bug_reports/request_sponsor/">http://opensolaris.org/os/bug_reports/request_sponsor/</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":sparc" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition=":sparc" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":sparc" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition=":sparc" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition=":sparc" num="snv_106" />
                <vers edition="" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10.0" />
                <vers edition=":sparc" num="10.0" />
                <vers edition=":x86" num="10.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0168" seq="2009-0168" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="4.9" modified="2009-03-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in ppdmgr in Sun Solaris 10 and OpenSolaris snv_61 through snv_106 allows local users to cause a denial of service via unspecified vectors, related to a failure to "include all cache files," and improper handling of temporary files.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-249306-1">249306</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-139390-01-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-139390-01-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48143">solaris-ppdmgr-dos(48143)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021601">1021601</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33269">33269</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0155">ADV-2009-0155</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-026.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-026.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33705">33705</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33488">33488</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5503">oval:org.mitre.oval:def:5503</ref>
            <ref source="MISC" url="http://opensolaris.org/os/bug_reports/request_sponsor/">http://opensolaris.org/os/bug_reports/request_sponsor/</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":sparc" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition=":sparc" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":sparc" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition=":sparc" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition=":sparc" num="snv_106" />
                <vers edition="" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:C/I:C/A:C)" CVSS_base_score="9.0" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="10.0" name="CVE-2009-0169" seq="2009-0169" severity="High" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="9.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Sun Java System Access Manager 7.1 allows remote authenticated sub-realm administrators to gain privileges, as demonstrated by creating the amadmin account in the sub-realm, and then logging in as amadmin in the root realm.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33266">33266</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-126356-02-1" adv="1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-126356-02-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47944">sun-jsam-subrealm-privilege-escalation(47944)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021604">1021604</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0157">ADV-2009-0157</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-249106-1" adv="1">249106</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_access_manager">
                <vers edition="" num="7.1" />
                <vers edition=":solaris_sparc" num="7.1" />
                <vers edition=":linux" num="7.1" />
                <vers edition=":solaris_x86" num="7.1" />
                <vers edition=":windows" num="7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.0" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="6.4" name="CVE-2009-0170" seq="2009-0170" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="6.0" modified="2009-02-05">
        <desc>
            <descript source="cve">Sun Java System Access Manager 6.3 2005Q1, 7 2005Q4, and 7.1 allows remote authenticated users with console privileges to discover passwords, and obtain unspecified other "access to resources," by visiting the Configuration Items component in the console.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33265">33265</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-242166-1" adv="1">242166</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-126356-02-1" adv="1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-126356-02-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47942">sun-jsam-password-info-disclosure(47942)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021605">1021605</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0156">ADV-2009-0156</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_access_manager">
                <vers num="6.3_2005q4" />
                <vers num="7.0_2005q4" />
                <vers num="7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0171" seq="2009-0171" severity="High" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-05">
        <desc>
            <descript source="cve">The Sun SPARC Enterprise M4000 and M5000 Server, within a certain range of serial numbers, allows remote attackers to use the manufacturing root password, perform a root login to the eXtended System Control Facility Unit (aka XSCFU or Service Processor), and have unspecified other impact.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021602">1021602</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33280">33280</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0207" adv="1">ADV-2009-0207</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-249126-1" adv="1">249126</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="sparc_enterprise_server">
                <vers num="m4000" />
                <vers num="m5000" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0172" seq="2009-0172" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="5.0" modified="2009-06-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in IBM DB2 8 before FP17a, 9.1 before FP6a, and 9.5 before FP3a allows remote attackers to cause a denial of service (infinite loop) via a crafted CONNECT data stream.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33258">33258</ref>
            <ref source="CONFIRM" patch="1" url="http://www-01.ibm.com/support/docview.wss?uid=swg21363936" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg21363936</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47931">ibm-db2-connect-stream-dos(47931)</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0137">ADV-2009-0137</ref>
            <ref source="AIXAPAR" url="http://www-01.ibm.com/support/docview.wss?uid=swg1IZ37696">IZ37696</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021591">1021591</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33529" adv="1">33529</ref>
            <ref source="CONFIRM" url="ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT">ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT</ref>
            <ref source="CONFIRM" url="ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v91/APARLIST.TXT">ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v91/APARLIST.TXT</ref>
            <ref source="CONFIRM" url="ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APARLIST.TXT">ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APARLIST.TXT</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="db2_universal_database">
                <vers edition="" num="9.1" />
                <vers edition=":hp-ux" num="9.1" />
                <vers edition=":windows" num="9.1" />
                <vers edition=":solaris" num="9.1" />
                <vers edition=":aix" num="9.1" />
                <vers edition=":linux" num="9.1" />
                <vers edition="fp2" num="9.1" />
                <vers edition="fp2:linux" num="9.1" />
                <vers edition="fp2:aix" num="9.1" />
                <vers edition="fp2:hp-ux" num="9.1" />
                <vers edition="fp2:windows" num="9.1" />
                <vers edition="fp2:solaris" num="9.1" />
                <vers edition="fp3" num="9.1" />
                <vers edition="fp3:solaris" num="9.1" />
                <vers edition="fp3:hp-ux" num="9.1" />
                <vers edition="fp3:aix" num="9.1" />
                <vers edition="fp4" num="9.1" />
                <vers edition="fp4:aix" num="9.1" />
                <vers edition="fp4:linux" num="9.1" />
                <vers edition="fp4:hp-ux" num="9.1" />
                <vers edition="fp4:windows" num="9.1" />
                <vers edition="fp4a" num="9.1" />
                <vers edition="fp4a:linux" num="9.1" />
                <vers edition="fp4a:windows" num="9.1" />
                <vers edition="fp4a:hp-ux" num="9.1" />
                <vers edition="ga" num="9.1" />
                <vers edition="" num="9.5" />
                <vers edition=":windows" num="9.5" />
                <vers edition=":hp-ux" num="9.5" />
                <vers edition=":solaris" num="9.5" />
                <vers edition=":linux" num="9.5" />
                <vers edition=":aix" num="9.5" />
                <vers edition="fp1" num="9.5" />
                <vers edition="fp1:linux" num="9.5" />
                <vers edition="fp1:solaris" num="9.5" />
                <vers edition="fp1:aix" num="9.5" />
                <vers edition="fp1:windows" num="9.5" />
                <vers edition="fp1:hp-ux" num="9.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0173" seq="2009-0173" severity="Medium" type="CVE" published="2009-01-16" CVSS_version="2.0" CVSS_score="5.0" modified="2009-06-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the server in IBM DB2 8 before FP17a, 9.1 before FP6a, and 9.5 before FP3a allows remote authenticated users to cause a denial of service (trap) via a crafted data stream.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www-01.ibm.com/support/docview.wss?uid=swg21363936" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg21363936</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47934">ibm-db2-datastream-dos(47934)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33258">33258</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0137">ADV-2009-0137</ref>
            <ref source="AIXAPAR" url="http://www-01.ibm.com/support/docview.wss?uid=swg1IZ39652">IZ39652</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021591">1021591</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33529" adv="1">33529</ref>
            <ref source="CONFIRM" url="ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT">ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT</ref>
            <ref source="CONFIRM" url="ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v91/APARLIST.TXT">ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v91/APARLIST.TXT</ref>
            <ref source="CONFIRM" url="ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APARLIST.TXT">ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APARLIST.TXT</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="db2_universal_database">
                <vers edition="" num="9.1" />
                <vers edition=":hp-ux" num="9.1" />
                <vers edition=":windows" num="9.1" />
                <vers edition=":solaris" num="9.1" />
                <vers edition=":aix" num="9.1" />
                <vers edition=":linux" num="9.1" />
                <vers edition="fp2" num="9.1" />
                <vers edition="fp2:linux" num="9.1" />
                <vers edition="fp2:aix" num="9.1" />
                <vers edition="fp2:hp-ux" num="9.1" />
                <vers edition="fp2:windows" num="9.1" />
                <vers edition="fp2:solaris" num="9.1" />
                <vers edition="fp3" num="9.1" />
                <vers edition="fp3:solaris" num="9.1" />
                <vers edition="fp3:hp-ux" num="9.1" />
                <vers edition="fp3:aix" num="9.1" />
                <vers edition="fp4" num="9.1" />
                <vers edition="fp4:aix" num="9.1" />
                <vers edition="fp4:linux" num="9.1" />
                <vers edition="fp4:hp-ux" num="9.1" />
                <vers edition="fp4:windows" num="9.1" />
                <vers edition="fp4a" num="9.1" />
                <vers edition="fp4a:linux" num="9.1" />
                <vers edition="fp4a:windows" num="9.1" />
                <vers edition="fp4a:hp-ux" num="9.1" />
                <vers edition="ga" num="9.1" />
                <vers edition="" num="9.5" />
                <vers edition=":windows" num="9.5" />
                <vers edition=":hp-ux" num="9.5" />
                <vers edition=":solaris" num="9.5" />
                <vers edition=":linux" num="9.5" />
                <vers edition=":aix" num="9.5" />
                <vers edition="fp1" num="9.5" />
                <vers edition="fp1:linux" num="9.5" />
                <vers edition="fp1:solaris" num="9.5" />
                <vers edition="fp1:aix" num="9.5" />
                <vers edition="fp1:windows" num="9.5" />
                <vers edition="fp1:hp-ux" num="9.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0174" seq="2009-0174" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Stack-based buffer overflow in VUPlayer 2.49 allows remote attackers to execute arbitrary code via a long .asf URI in the HREF attribute of a REF element in a .asx file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47851">vuplayer-asx-bo(47851)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33185">33185</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7715">7715</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7714">7714</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7713">7713</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7709">7709</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4918">4918</ref>
        </refs>
        <vuln_soft>
            <prod vendor="vuplayer" name="vuplayer">
                <vers num="2.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0175" seq="2009-0175" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Heap-based buffer overflow in Heathco Software MP3 TrackMaker 1.5 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long string in an invalid .mp3 file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/47852">mp3trackmaker-mp3-bo(47852)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33183">33183</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7708">7708</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4920">4920</ref>
        </refs>
        <vuln_soft>
            <prod vendor="heathcosoft" name="mp3_trackmaker">
                <vers num="1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0176" seq="2009-0176" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="9.3" modified="2009-05-18">
        <desc>
            <descript source="cve">Multiple heap-based buffer overflows in the PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 allow user-assisted remote attackers to execute arbitrary code via (1) a crafted stream in a .pdf file, related to "symWidths"; or (2) a crafted data stream in a .pdf file, related to "bitmaps."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33224">33224</ref>
            <ref source="CONFIRM" url="http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17119" adv="1">http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17119</ref>
            <ref source="CONFIRM" url="http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17118" adv="1">http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17118</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33534" adv="1">33534</ref>
            <ref source="IDEFENSE" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=765">20090113 RIM BlackBerry Enterprise Server Attachment Service PDF Distiller 'bitmaps' Heap Overflow Vulnerability</ref>
            <ref source="IDEFENSE" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=764">20090113 RIM BlackBerry Enterprise Server Attachment Service PDF Distiller 'symWidths' Heap Overflow Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="research_in_motion_limited" name="blackberry_enterprise_server">
                <vers num="4.1.3" />
                <vers num="4.1.4" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
            </prod>
            <prod vendor="research_in_motion_limited" name="blackberry_professional_software">
                <vers num="4.1.4" />
            </prod>
            <prod vendor="research_in_motion_limited" name="blackberry_unite">
                <vers num="1.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0177" seq="2009-0177" severity="Medium" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="5.0" modified="2009-04-23">
        <desc>
            <descript source="cve">vmwarebase.dll, as used in the vmware-authd service (aka vmware-authd.exe), in VMware Workstation 6.5.1 build 126130, 6.5.1 and earlier; VMware Player 2.5.1 build 126130, 2.5.1 and earlier; VMware ACE 2.5.1 and earlier; VMware Server 2.0.x before 2.0.1 build 156745; and VMware Fusion before 2.0.2 build 147997 allows remote attackers to cause a denial of service (daemon crash) via a long (1) USER or (2) PASS command.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.vmware.com/security/advisories/VMSA-2009-0005.html" adv="1">http://www.vmware.com/security/advisories/VMSA-2009-0005.html</ref>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2009/0024" adv="1">ADV-2009-0024</ref>
            <ref source="FULLDISC" patch="1" url="http://seclists.org/fulldisclosure/2009/Apr/0036.html">20090403 VMSA-2009-0005 VMware Hosted products, VI Client and patches for ESX and ESXi resolve multiple security issues</ref>
            <ref source="MLIST" patch="1" url="http://lists.vmware.com/pipermail/security-announce/2009/000054.html">[security-announce] 20090403 VMSA-2009-0005 VMware Hosted products, VI Client and patches for ESX and ESXi resolve multiple security issues</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2009/0944" adv="1">ADV-2009-0944</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021512">1021512</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/34373">34373</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34601" adv="1">34601</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33372" adv="1">33372</ref>
            <ref source="OSVDB" url="http://osvdb.org/51180">51180</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/7647">7647</ref>
        </refs>
        <vuln_soft>
            <prod vendor="vmware" name="vmware_player">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0.6" />
                <vers num="1.0.7" />
                <vers num="1.0.8" />
                <vers num="1.0.9" />
                <vers num="1.05" />
                <vers num="2.0" />
                <vers num="2.0.1" />
                <vers num="2.0.2" />
                <vers num="2.0.3" />
                <vers num="2.0.4" />
                <vers num="2.0.5" />
                <vers num="2.5" />
                <vers num="2.5.1" prev="1" />
            </prod>
            <prod vendor="vmware" name="vmware_workstation">
                <vers num="4.5.3" />
                <vers num="5.0" />
                <vers num="5.5.0" />
                <vers num="5.5.1" />
                <vers num="5.5.2" />
                <vers num="5.5.3" />
                <vers num="5.5.4" />
                <vers num="5.5.5" />
                <vers num="5.5.6" />
                <vers num="5.5.7" />
                <vers num="5.5.8" />
                <vers num="6.0" />
                <vers num="6.0.1" />
                <vers num="6.0.2" />
                <vers num="6.0.3" />
                <vers num="6.0.4" />
                <vers num="6.0.5" />
                <vers num="6.5" />
                <vers num="6.51" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0178" seq="2009-0178" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="10.0" modified="2009-01-26">
        <desc>
            <descript source="cve">Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.2.0 SP1 has unknown impact and attack vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48010">ibm-hmc-unspecified(48010)</ref>
            <ref source="CONFIRM" url="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4521">http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4521</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33293">33293</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0158" adv="1">ADV-2009-0158</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33518" adv="1">33518</ref>
            <ref source="OSVDB" url="http://osvdb.org/51432">51432</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="hardware_management_console">
                <vers edition="sp1" num="7.3.2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0179" seq="2009-0179" severity="Medium" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-02">
        <desc>
            <descript source="cve">libmikmod 3.1.11 through 3.2.0, as used by MikMod and possibly other products, allows user-assisted attackers to cause a denial of service (application crash) by loading an XM file.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01312.html">FEDORA-2009-9112</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-August/msg01305.html">FEDORA-2009-9095</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=479833">https://bugzilla.redhat.com/show_bug.cgi?id=479833</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33240">33240</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34259">34259</ref>
            <ref source="MLIST" url="http://openwall.com/lists/oss-security/2009/01/13/2">[oss-security] 20090113 CVE Request -- libmikmod</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00001.html">SUSE-SR:2009:006</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476339">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=476339</ref>
        </refs>
        <vuln_soft>
            <prod vendor="igno_saitz" name="libmikmod">
                <vers num="3.1.10-1" />
                <vers num="3.1.10-2" />
                <vers num="3.1.10-3" />
                <vers num="3.1.10-4" />
                <vers num="3.1.10-5" />
                <vers num="3.1.11-1" />
                <vers num="3.1.11-2" />
                <vers num="3.1.11-3" />
                <vers num="3.1.11-4" />
                <vers num="3.1.11-5" />
                <vers num="3.1.11-6" />
                <vers num="3.1.12" />
                <vers num="3.1.9-1" />
                <vers num="3.1.9-2" />
                <vers num="3.1.9-3" />
                <vers num="3.1.9-4" />
                <vers num="3.1.9-5" />
                <vers num="3.1.9-6" />
                <vers num="3.2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0180" seq="2009-0180" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-21">
        <desc>
            <descript source="cve">Certain Fedora build scripts for nfs-utils before 1.1.2-9.fc9 on Fedora 9, and before 1.1.4-6.fc10 on Fedora 10, omit TCP Wrapper support, which might allow remote attackers to bypass intended access restrictions, possibly a related issue to CVE-2008-1376.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00526.html">FEDORA-2009-0297</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00376.html">FEDORA-2009-0266</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=477864">https://bugzilla.redhat.com/show_bug.cgi?id=477864</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48058">nfsutils-tcpwrapper-security-bypass(48058)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33294">33294</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33545" adv="1">33545</ref>
        </refs>
        <vuln_soft>
            <prod vendor="nfs" name="nfs-utils">
                <vers num="0.2" />
                <vers num="0.2.1" />
                <vers num="0.3.1" />
                <vers num="0.3.3" />
                <vers num="1.0" />
                <vers num="1.0.1" />
                <vers num="1.0.10" />
                <vers num="1.0.11" />
                <vers num="1.0.12" />
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0.6" />
                <vers edition="pre-1" num="1.0.7" />
                <vers edition="pre-2" num="1.0.7" />
                <vers edition="rc-1" num="1.0.8" />
                <vers edition="rc-2" num="1.0.8" />
                <vers edition="rc-3" num="1.0.8" />
                <vers edition="rc-4" num="1.0.8" />
                <vers num="1.0.9" />
                <vers edition="rc-1" num="1.1.0" />
                <vers num="1.1.1" />
                <vers num="1.1.2" prev="1" />
                <vers num="1.1.3" />
                <vers num="1.1.4" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0181" seq="2009-0181" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Buffer overflow in VUPlayer allows user-assisted attackers to have an unknown impact via a long file, as demonstrated by a file composed entirely of 'A' characters.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48169">vuplayer-file-bo(48169)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/499810/100/0/threaded">20090106 VUPLAYER BufferOver flow POC</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4921">4921</ref>
        </refs>
        <vuln_soft>
            <prod vendor="vuplayer" name="vuplayer">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0182" seq="2009-0182" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Buffer overflow in VUPlayer 2.49 and earlier allows user-assisted attackers to execute arbitrary code via a long URL in a File line in a .pls file, as demonstrated by an http URL on a File1 line.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48170">vuplayer-fileline-bo(48170)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7695">7695</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4923">4923</ref>
        </refs>
        <vuln_soft>
            <prod vendor="vuplayer" name="vuplayer">
                <vers num="0.1" />
                <vers num="0.2" />
                <vers num="0.3" />
                <vers num="0.4" />
                <vers num="0.5" />
                <vers num="0.6" />
                <vers num="0.7" />
                <vers num="0.8" />
                <vers num="0.9" />
                <vers num="1.0" />
                <vers num="1.01" />
                <vers num="1.04" />
                <vers num="1.05" />
                <vers num="1.1" />
                <vers num="1.2" />
                <vers num="1.3" />
                <vers num="1.4" />
                <vers num="1.5" />
                <vers num="1.6" />
                <vers num="1.7" />
                <vers num="1.8" />
                <vers num="1.9" />
                <vers num="2.0" />
                <vers num="2.01" />
                <vers num="2.02" />
                <vers num="2.03" />
                <vers num="2.1" />
                <vers num="2.11" />
                <vers num="2.2" />
                <vers num="2.21" />
                <vers num="2.22" />
                <vers num="2.23" />
                <vers num="2.3" />
                <vers num="2.4" />
                <vers num="2.41" />
                <vers num="2.42" />
                <vers num="2.43" />
                <vers num="2.44" />
                <vers num="2.45" />
                <vers num="2.46" />
                <vers num="2.47" />
                <vers num="2.48" />
                <vers num="2.49" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0219" seq="2009-0219" severity="High" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-05">
        <desc>
            <descript source="cve">The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 performs delete operations on uninitialized pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted data stream in a .pdf file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021559">1021559</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33250">33250</ref>
            <ref source="CONFIRM" url="http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17119" adv="1">http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17119</ref>
            <ref source="CONFIRM" url="http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17118" adv="1">http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=KB17118</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33534" adv="1">33534</ref>
            <ref source="IDEFENSE" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=766">20090113 RIM BlackBerry Enterprise Server Attachment Service PDF Distiller Uninitialized Memory Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="research_in_motion_limited" name="blackberry_enterprise_server">
                <vers num="4.1.3" />
                <vers num="4.1.4" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
            </prod>
            <prod vendor="research_in_motion_limited" name="blackberry_professional_software">
                <vers num="4.1.4" />
            </prod>
            <prod vendor="research_in_motion_limited" name="blackberry_unite">
                <vers num="1.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0031" seq="2009-0031" severity="Medium" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="4.9" modified="2009-05-13">
        <desc>
            <descript source="cve">Memory leak in the keyctl_join_session_keyring function (security/keys/keyctl.c) in Linux kernel 2.6.29-rc2 and earlier allows local users to cause a denial of service (kernel memory consumption) via unknown vectors related to a "missing kfree."</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-751-1">USN-751-1</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0360.html">RHSA-2009:0360</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0331.html">RHSA-2009:0331</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/19/4">[oss-security] 20090119 CVE-2009-0031 kernel: local denial of service in keyctl_join_session_keyring</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1794">DSA-1794</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1787">DSA-1787</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1749">DSA-1749</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-114.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-114.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35011">35011</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34981">34981</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34762">34762</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34502">34502</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34394">34394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34252">34252</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33858">33858</ref>
            <ref source="REDHAT" url="http://rhn.redhat.com/errata/RHSA-2009-0264.html">RHSA-2009:0264</ref>
            <ref source="OSVDB" url="http://osvdb.org/51501">51501</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.html">SUSE-SA:2009:010</ref>
            <ref source="CONFIRM" url="http://git2.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0d54ee1c7850a954026deec4cd4885f331da35cc">http://git2.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0d54ee1c7850a954026deec4cd4885f331da35cc</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers num="2.6.23" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.23_rc1" />
                <vers num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24.7" />
                <vers num="2.6.24_rc1" />
                <vers num="2.6.24_rc4" />
                <vers num="2.6.24_rc5" />
                <vers edition="" num="2.6.25" />
                <vers edition=":x86_64" num="2.6.25" />
                <vers edition="" num="2.6.25.1" />
                <vers edition=":x86_64" num="2.6.25.1" />
                <vers edition="" num="2.6.25.10" />
                <vers edition=":x86_64" num="2.6.25.10" />
                <vers edition="" num="2.6.25.11" />
                <vers edition=":x86_64" num="2.6.25.11" />
                <vers edition="" num="2.6.25.12" />
                <vers edition=":x86_64" num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.15" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers edition="" num="2.6.25.2" />
                <vers edition=":x86_64" num="2.6.25.2" />
                <vers edition="" num="2.6.25.3" />
                <vers edition=":x86_64" num="2.6.25.3" />
                <vers edition="" num="2.6.25.4" />
                <vers edition=":x86_64" num="2.6.25.4" />
                <vers edition="" num="2.6.25.5" />
                <vers edition=":x86_64" num="2.6.25.5" />
                <vers edition="" num="2.6.25.6" />
                <vers edition=":x86_64" num="2.6.25.6" />
                <vers edition="" num="2.6.25.7" />
                <vers edition=":x86_64" num="2.6.25.7" />
                <vers edition="" num="2.6.25.8" />
                <vers edition=":x86_64" num="2.6.25.8" />
                <vers edition="" num="2.6.25.9" />
                <vers edition=":x86_64" num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.27" />
                <vers num="2.6.28" />
                <vers num="2.6.28.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:N/A:N)" CVSS_base_score="3.5" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="2.9" name="CVE-2009-0240" seq="2009-0240" severity="Low" type="CVE" published="2009-01-20" CVSS_version="2.0" CVSS_score="3.5" modified="2009-03-21">
        <desc>
            <descript source="cve">listing.php in WebSVN 2.0 and possibly 1.7 beta, when using an SVN authz file, allows remote authenticated users to read changelogs or diffs for restricted projects via a modified repname parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48171">websvn-listing-information-disclosure(48171)</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/18/2">[oss-security] 20090118 CVE request: WebSVN</ref>
            <ref source="GENTOO" url="http://www.gentoo.org/security/en/glsa/glsa-200903-20.xml">GLSA-200903-20</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34191">34191</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/32338" adv="1">32338</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=512191">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=512191</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tigris" name="websvn">
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0241" seq="2009-0241" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="7.5" modified="2009-06-13">
        <desc>
            <descript source="cve">Stack-based buffer overflow in the process_path function in gmetad/server.c in Ganglia 3.1.1 allows remote attackers to cause a denial of service (crash) via a request to the gmetad service with a long pathname.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33299">33299</ref>
            <ref source="MLIST" url="http://www.mail-archive.com/ganglia-developers@lists.sourceforge.net/msg04929.html">[Ganglia-developers] 20090113 patches for: [Sec] Gmetad server BoF and network overload + [Feature] multiple requests per conn on interactive port</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200903-22.xml">GLSA-200903-22</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35416">35416</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34228">34228</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33506" adv="1">33506</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00003.html">SUSE-SR:2009:011</ref>
            <ref source="MISC" url="http://bugzilla.ganglia.info/cgi-bin/bugzilla/show_bug.cgi?id=223">http://bugzilla.ganglia.info/cgi-bin/bugzilla/show_bug.cgi?id=223</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ganglia" name="ganglia">
                <vers num="3.1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry reject="1" name="CVE-2009-0242" seq="2009-0242" type="CVE" published="2009-01-21" modified="2009-02-05">
        <desc>
            <descript source="cve">** REJECT **  gmetad in Ganglia 3.1.1, when supporting multiple requests per connection on an interactive port, allows remote attackers to cause a denial of service via a request to the gmetad service with a path does not exist, which causes Ganglia to (1) perform excessive CPU computation and (2) send the entire tree, which consumes network bandwidth.  NOTE: the vendor and original researcher have disputed this issue, since legitimate requests can generate the same amount of resource consumption.  CVE concurs with the dispute, so this identifier should not be used.</descript>
        </desc>
        <refs />
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0001" seq="2009-0001" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted RTSP URL.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48154">quicktime-rtspurl-bo(48154)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33385">33385</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0212">ADV-2009-0212</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3403">http://support.apple.com/kb/HT3403</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6135">oval:org.mitre.oval:def:6135</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0002" seq="2009-0002" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QTVR movie file with crafted THKD atoms.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="MISC" url="http://www.zerodayinitiative.com/advisories/ZDI-09-005/">http://www.zerodayinitiative.com/advisories/ZDI-09-005/</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33384">33384</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0212">ADV-2009-0212</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3403">http://support.apple.com/kb/HT3403</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5646">oval:org.mitre.oval:def:5646</ref>
            <ref source="OSVDB" url="http://osvdb.org/51525">51525</ref>
            <ref source="BUGTRAQ" url="http://archives.neohapsis.com/archives/bugtraq/2009-01/0210.html">20090121 ZDI-09-005: Apple QuickTime VR Track Header Atom Heap Corruption Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0003" seq="2009-0003" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via an AVI movie file with an invalid nBlockAlign value in the _WAVEFORMATEX structure.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="MISC" url="http://www.zerodayinitiative.com/advisories/ZDI-09-006/">http://www.zerodayinitiative.com/advisories/ZDI-09-006/</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33387">33387</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0212">ADV-2009-0212</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3403">http://support.apple.com/kb/HT3403</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6218">oval:org.mitre.oval:def:6218</ref>
            <ref source="OSVDB" url="http://osvdb.org/51526">51526</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0004" seq="2009-0004" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-05-14">
        <desc>
            <descript source="cve">Buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted MP3 audio file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" patch="1" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2009/0212" adv="1">ADV-2009-0212</ref>
            <ref source="CONFIRM" patch="1" url="http://support.apple.com/kb/HT3403" adv="1">http://support.apple.com/kb/HT3403</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48157">quicktime-mpeg2-bo(48157)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632" adv="1">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6211">oval:org.mitre.oval:def:6211</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0005" seq="2009-0005" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted H.263 encoded movie file that triggers memory corruption.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48158">quicktime-h263-movie-code-execution(48158)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33386">33386</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0212">ADV-2009-0212</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3403">http://support.apple.com/kb/HT3403</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6187">oval:org.mitre.oval:def:6187</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0006" seq="2009-0006" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Integer signedness error in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a Cinepak encoded movie file with a crafted MDAT atom that triggers a heap-based buffer overflow.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="MISC" url="http://www.zerodayinitiative.com/advisories/ZDI-09-007/">http://www.zerodayinitiative.com/advisories/ZDI-09-007/</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33388">33388</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500391/100/0/threaded">20090124 Re: ZDI-09-007: Apple QuickTime Cinepak Codec MDAT Heap Corruption Vulnerability</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0212">ADV-2009-0212</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3403">http://support.apple.com/kb/HT3403</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6153">oval:org.mitre.oval:def:6153</ref>
            <ref source="OSVDB" url="http://osvdb.org/51529">51529</ref>
            <ref source="BUGTRAQ" url="http://archives.neohapsis.com/archives/bugtraq/2009-01/0215.html">20090121 ZDI-09-007: Apple QuickTime Cinepak Codec MDAT Heap Corruption Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0007" seq="2009-0007" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="9.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Heap-based buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a QuickTime movie file containing invalid image width data in JPEG atoms within STSD atoms.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-022A.html">TA09-022A</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2009/Jan/msg00000.html" adv="1">APPLE-SA-2009-01-21</ref>
            <ref source="MISC" url="http://www.zerodayinitiative.com/advisories/ZDI-09-008/">http://www.zerodayinitiative.com/advisories/ZDI-09-008/</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33390">33390</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0212">ADV-2009-0212</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3403">http://support.apple.com/kb/HT3403</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33632">33632</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6132">oval:org.mitre.oval:def:6132</ref>
            <ref source="OSVDB" url="http://osvdb.org/51530">51530</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="3" />
                <vers num="4.1.2" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.5" />
                <vers num="6.5.1" />
                <vers num="6.5.2" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
                <vers num="7.0.3" />
                <vers num="7.0.4" />
                <vers num="7.0.8" />
                <vers num="7.1" />
                <vers num="7.1.1" />
                <vers num="7.1.2" />
                <vers num="7.1.3" />
                <vers num="7.1.4" />
                <vers num="7.1.5" />
                <vers num="7.1.6" />
                <vers num="7.2" />
                <vers num="7.3" />
                <vers num="7.3.1" />
                <vers num="7.3.1.70" />
                <vers num="7.4" />
                <vers num="7.4.1" />
                <vers num="7.4.4" />
                <vers num="7.4.5" />
                <vers num="7.5" />
                <vers num="7.5.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0026" seq="2009-0026" severity="Medium" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="4.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in Apache Jackrabbit before 1.5.2 allow remote attackers to inject arbitrary web script or HTML via the q parameter to (1) search.jsp or (2) swr.jsp.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://issues.apache.org/jira/browse/JCR-1925" adv="1">https://issues.apache.org/jira/browse/JCR-1925</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48110">jackrabbit-search-swr-xss(48110)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33360">33360</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500196/100/0/threaded">20090120 [ANNOUNCE] Apache Jackrabbit 1.5.2 released</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0177">ADV-2009-0177</ref>
            <ref source="CONFIRM" url="http://www.apache.org/dist/jackrabbit/RELEASE-NOTES-1.5.2.txt">http://www.apache.org/dist/jackrabbit/RELEASE-NOTES-1.5.2.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4942">4942</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33576" adv="1">33576</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="jackrabbit">
                <vers num="1.4" />
                <vers num="1.5.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2009-0030" seq="2009-0030" severity="Medium" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="6.5" modified="2009-02-20">
        <desc>
            <descript source="cve">A certain Red Hat patch for SquirrelMail 1.4.8 sets the same SQMSESSID cookie value for all sessions, which allows remote authenticated users to access other users' folder lists and configuration data in opportunistic circumstances by using the standard webmail.php interface.  NOTE: this vulnerability exists because of an incorrect fix for CVE-2008-3663.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="REDHAT" url="https://rhn.redhat.com/errata/RHSA-2009-0057.html">RHSA-2009:0057</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=480488">https://bugzilla.redhat.com/show_bug.cgi?id=480488</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=480224">https://bugzilla.redhat.com/show_bug.cgi?id=480224</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48115">squirrelmail-sessionid-session-hijacking(48115)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33354">33354</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021611">1021611</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33611" adv="1">33611</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.html">SUSE-SR:2009:004</ref>
        </refs>
        <vuln_soft>
            <prod vendor="squirrelmail" name="squirrelmail">
                <vers num="1.4.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2009-0243" seq="2009-0243" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="7.2" modified="2009-01-29">
        <desc>
            <descript source="cve">Microsoft Windows does not properly enforce the Autorun and NoDriveTypeAutoRun registry values, which allows physically proximate attackers to execute arbitrary code by (1) inserting CD-ROM media, (2) inserting DVD media, (3) connecting a USB device, and (4) connecting a Firewire device; (5) allows user-assisted remote attackers to execute arbitrary code by mapping a network drive; and allows user-assisted attackers to execute arbitrary code by clicking on (6) an icon under My Computer\Devices with Removable Storage and (7) an option in an AutoPlay dialog, related to the Autorun.inf file.  NOTE: vectors 1 and 3 on Vista are already covered by CVE-2008-0951.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA09-020A.html">TA09-020A</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021629">1021629</ref>
            <ref source="MISC" url="http://isc.sans.org/diary.html?storyid=5695">http://isc.sans.org/diary.html?storyid=5695</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="windows_2000">
                <vers edition="sp4" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2003">
                <vers edition=":x64" num="" />
                <vers edition="sp1" num="" />
                <vers edition="sp1:itanium" num="" />
                <vers edition="sp2" num="" />
                <vers edition="sp2:x64" num="" />
                <vers edition="sp2:itanium" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2008">
                <vers edition=":itanium" num="" />
                <vers edition=":x32" num="" />
                <vers edition=":x64" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_vista">
                <vers edition=":x64" num="" />
                <vers edition="sp1" num="" />
                <vers edition="sp1:x64" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_xp">
                <vers edition=":professional_x64" num="" />
                <vers edition="sp2" num="" />
                <vers edition="sp2:professional_x64" num="" />
                <vers edition="sp3" num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:C/I:C/A:C)" CVSS_base_score="8.5" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="10.0" name="CVE-2009-0244" seq="2009-0244" severity="High" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="8.5" modified="2009-02-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobile 6 Professional, and probably Windows Mobile 5.0 for Pocket PC and 5.0 for Pocket PC Phone Edition, allows remote authenticated users to list arbitrary directories, and create or read arbitrary files, via a .. (dot dot) in a pathname.  NOTE: this can be leveraged for code execution by writing to a Startup folder.</descript>
        </desc>
        <impacts>
            <impact source="nvd">per: http://www.seguridadmobile.com/windows-mobile/windows-mobile-security/Microsoft-Bluetooth-Stack-Directory-Traversal.html

"Non vulnerable products: Windows Mobile devices 5.0 and 6 not using Microsoft Bluetooth Stack (for example: ASUS P525, ASUS P535, ... using Widcomm/Broadcom Bluetooth Stack)"</impact>
        </impacts>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48124">winmobile-obexftp-directory-traversal(48124)</ref>
            <ref source="MISC" url="http://www.seguridadmobile.com/windows-mobile/windows-mobile-security/Microsoft-Bluetooth-Stack-Directory-Traversal.html">http://www.seguridadmobile.com/windows-mobile/windows-mobile-security/Microsoft-Bluetooth-Stack-Directory-Traversal.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33359">33359</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500199/100/0/threaded">20090119 Microsoft Bluetooth Stack OBEX Directory Traversal</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4938">4938</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33598">33598</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="windows_mobile">
                <vers edition="" num="5.0" />
                <vers edition=":smartphone" num="5.0" />
                <vers edition=":pocket_pc" num="5.0" />
                <vers edition="" num="6.0" />
                <vers edition=":pro" num="6.0" />
                <vers edition=":standard" num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0245" seq="2009-0245" severity="Medium" type="CVE" published="2009-01-21" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-22">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Usagi Project MyNETS 1.2.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CVE-2008-4629.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://usagi-project.org/PRESS/archives/57" adv="1">http://usagi-project.org/PRESS/archives/57</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33145">33145</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33409" adv="1">33409</ref>
            <ref source="JVNDB" url="http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000001.html">JVNDB-2009-000001</ref>
            <ref source="JVN" url="http://jvn.jp/en/jp/JVN36802959/index.html">JVN#36802959</ref>
        </refs>
        <vuln_soft>
            <prod vendor="usagi" name="mynets">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
                <vers num="1.1.0" />
                <vers num="1.2.0" />
                <vers num="1.2.0.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0246" seq="2009-0246" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Stack-based buffer overflow in easyHDR PRO 1.60.2 allows user-assisted attackers to execute arbitrary code via an invalid Radiance RGBE (aka .hdr) file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48119">easyhdrpro-hdr-bo(48119)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33363">33363</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500192/100/0/threaded">20090120 Secunia Research: EasyHDR Pro Radiance RGBE Buffer Overflow</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0190">ADV-2009-0190</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4941">4941</ref>
            <ref source="MISC" url="http://secunia.com/secunia_research/2008-61/" adv="1">http://secunia.com/secunia_research/2008-61/</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33468" adv="1">33468</ref>
            <ref source="OSVDB" url="http://osvdb.org/51609">51609</ref>
            <ref source="CONFIRM" url="http://easyhdr.com/version.php" adv="1">http://easyhdr.com/version.php</ref>
        </refs>
        <vuln_soft>
            <prod vendor="easyhdr" name="easyhdr">
                <vers edition="" num="1.60.2" />
                <vers edition=":pro" num="1.60.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0247" seq="2009-0247" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-22">
        <desc>
            <descript source="cve">The server for 53KF Web IM 2009 Home, Professional, and Enterprise editions relies on client-side protection mechanisms against cross-site scripting (XSS), which allows remote attackers to conduct XSS attacks by using a modified client to send a crafted IM message, related to the msg variable.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48096">53kfwebim-msg-xss(48096)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33341">33341</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500169/100/0/threaded">20090119 53KF Web IM 2009 Cross-Site Scripting Vulnerabilities</ref>
        </refs>
        <vuln_soft>
            <prod vendor="53kf" name="web_im_2009">
                <vers edition="enterprise" num="_nil_" />
                <vers edition="home" num="_nil_" />
                <vers edition="professional" num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0248" seq="2009-0248" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-22">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in rankup.asp in Katy Whitton RankEm allows remote attackers to inject arbitrary web script or HTML via the siteID parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48072">rankem-siteid-xss(48072)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48071">rankem-rankup-xss(48071)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33324">33324</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7805">7805</ref>
        </refs>
        <vuln_soft>
            <prod vendor="katywhitton" name="rankem">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0249" seq="2009-0249" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-22">
        <desc>
            <descript source="cve">Katy Whitton RankEm stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for database/topsites.mdb.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48070">rankem-topsites-information-disclosure(48070)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7805">7805</ref>
        </refs>
        <vuln_soft>
            <prod vendor="katywhitton" name="rankem">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0250" seq="2009-0250" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Ryneezy phoSheezy 0.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the file containing the administrator's password hash via a direct request for config/password.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48056">phosheezy-configpassword-info-disclosure(48056)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7780">7780</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4935">4935</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33531" adv="1">33531</ref>
            <ref source="OSVDB" url="http://osvdb.org/51411">51411</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ryneezy" name="phosheezy">
                <vers num="0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2009-0251" seq="2009-0251" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="6.5" modified="2009-01-29">
        <desc>
            <descript source="cve">Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code into config/footer via the footer parameter.  NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2009-0250. NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7780">7780</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4935">4935</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33531" adv="1">33531</ref>
            <ref source="OSVDB" url="http://osvdb.org/51412">51412</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ryneezy" name="phosheezy">
                <vers num="0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0252" seq="2009-0252" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in default.asp in Enthrallweb eReservations allow remote attackers to execute arbitrary SQL commands via the (1) Login parameter (aka username field) or the (2) Password parameter (aka password field).  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48062">ereservations-login-sql-injection(48062)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33321">33321</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7801">7801</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33578" adv="1">33578</ref>
            <ref source="OSVDB" url="http://osvdb.org/51456">51456</ref>
        </refs>
        <vuln_soft>
            <prod vendor="enthrallweb" name="ereservations">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="10.0" name="CVE-2009-0008" seq="2009-0008" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="7.6" modified="2009-03-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in Apple QuickTime MPEG-2 Playback Component before 7.60.92.0 on Windows allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted MPEG-2 movie.</descript>
            <descript source="nvd">per http://lists.apple.com/archives/security-announce//2009/Jan/msg00001.html

"This issue does not
affect systems running Mac OS X."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48162">quicktime-mpeg2playback-code-execution(48162)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021621">1021621</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33393">33393</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0211" adv="1">ADV-2009-0211</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3404" adv="1">http://support.apple.com/kb/HT3404</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33642" adv="1">33642</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5974">oval:org.mitre.oval:def:5974</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce//2009/Jan/msg00001.html" adv="1">APPLE-SA-2009-01-21</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime_mpeg-2_playback_component">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0057" seq="2009-0057" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-29">
        <desc>
            <descript source="cve">The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager 5.x before 5.1(3e) and 6.x before 6.1(3) allows remote attackers to cause a denial of service (voice service outage) by sending malformed input over a TCP session in which the "client terminates prematurely."</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48139">cucm-capf-dos-var1(48139)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021620">1021620</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33379">33379</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0213" adv="1">ADV-2009-0213</ref>
            <ref source="CISCO" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080a61928.shtml" adv="1">20090121 Cisco Unified Communications Manager CAPF Denial of Service Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33588" adv="1">33588</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="unified_communications_manager">
                <vers num="5.0" />
                <vers num="5.0_1" />
                <vers num="5.0_2" />
                <vers num="5.0_3" />
                <vers num="5.0_3a" />
                <vers num="5.0_4" />
                <vers num="5.0_4a" />
                <vers num="5.0_4a_su1" />
                <vers edition="(1)" num="5.1" />
                <vers edition="(2)" num="5.1" />
                <vers edition="(2a)" num="5.1" />
                <vers edition="(2b)" num="5.1" />
                <vers edition="(3a)" num="5.1" />
                <vers edition="5.1(1)" num="5.1" />
                <vers edition="5.1_(2a)" num="5.1" />
                <vers num="5.1(1)" />
                <vers num="5.1(2)" />
                <vers num="5.1(3c)" />
                <vers num="5.1.2" />
                <vers num="5.1_(2a)" />
                <vers num="5.1_1" />
                <vers num="5.1_2" />
                <vers num="5.1_2a" />
                <vers num="5.1_2b" />
                <vers num="5.1_3a" />
                <vers edition="(1)" num="6.0" />
                <vers edition="(1a)" num="6.0" />
                <vers num="6.0_1" />
                <vers num="6.0_1a" />
                <vers edition="(1a)" num="6.1" />
                <vers num="6.1(2)" />
                <vers num="6.1.0" />
                <vers num="6.1_1a" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0253" seq="2009-0253" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-29">
        <desc>
            <descript source="cve">Mozilla Firefox 3.0.5 allows remote attackers to trick a user into visiting an arbitrary URL via an onclick action that moves a crafted element to the current mouse position, related to a "Status Bar Obfuscation" and "Clickjacking" attack.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48212">firefox-onclickaction-click-hijacking(48212)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7842">7842</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/4936">4936</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="firefox">
                <vers num="3.0.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0254" seq="2009-0254" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Stack-based buffer overflow in easyHDR PRO 1.60.2 allows user-assisted attackers to execute arbitrary code via an invalid Flexible Image Transport System (FITS) file.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33363">33363</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0190">ADV-2009-0190</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33468" adv="1">33468</ref>
            <ref source="OSVDB" url="http://osvdb.org/51608">51608</ref>
            <ref source="CONFIRM" url="http://easyhdr.com/version.php" adv="1">http://easyhdr.com/version.php</ref>
        </refs>
        <vuln_soft>
            <prod vendor="easyhdr" name="easyhdr">
                <vers edition="" num="1.60.2" />
                <vers edition=":pro" num="1.60.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0255" seq="2009-0255" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-29">
        <desc>
            <descript source="cve">The System extension Install tool in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 creates the encryption key with an insufficiently random seed, which makes it easier for attackers to crack the key.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48132">typo3-installtool-weak-security(48132)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33376">33376</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1711">DSA-1711</ref>
            <ref source="CONFIRM" url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33679" adv="1">33679</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33617" adv="1">33617</ref>
        </refs>
        <vuln_soft>
            <prod vendor="typo3" name="typo3">
                <vers num="4.0" />
                <vers num="4.0.1" />
                <vers num="4.0.2" />
                <vers num="4.0.3" />
                <vers num="4.0.4" />
                <vers num="4.0.5" />
                <vers num="4.0.6" />
                <vers num="4.0.7" />
                <vers num="4.0.8" />
                <vers num="4.0.9" />
                <vers edition="beta1" num="4.1.0" />
                <vers edition="rc1" num="4.1.0" />
                <vers num="4.1.1" />
                <vers num="4.1.2" />
                <vers num="4.1.3" />
                <vers num="4.1.4" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
                <vers num="4.1.7" />
                <vers num="4.2.0" />
                <vers num="4.2.1" />
                <vers num="4.2.2" />
                <vers num="4.2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0256" seq="2009-0256" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">Session fixation vulnerability in the authentication library in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allows remote attackers to hijack web sessions via unspecified vectors related to (1) frontend and (2) backend authentication.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48133">typo3-library-session-hijacking(48133)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33376">33376</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1711">DSA-1711</ref>
            <ref source="CONFIRM" url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33679">33679</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33617" adv="1">33617</ref>
        </refs>
        <vuln_soft>
            <prod vendor="typo3" name="typo3">
                <vers num="4.0" />
                <vers num="4.0.1" />
                <vers num="4.0.2" />
                <vers num="4.0.3" />
                <vers num="4.0.4" />
                <vers num="4.0.5" />
                <vers num="4.0.6" />
                <vers num="4.0.7" />
                <vers num="4.0.8" />
                <vers num="4.0.9" />
                <vers edition="beta1" num="4.1.0" />
                <vers edition="rc1" num="4.1.0" />
                <vers num="4.1.1" />
                <vers num="4.1.2" />
                <vers num="4.1.3" />
                <vers num="4.1.4" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
                <vers num="4.1.7" />
                <vers num="4.2.0" />
                <vers num="4.2.1" />
                <vers num="4.2.2" />
                <vers num="4.2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0257" seq="2009-0257" severity="Medium" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) content of indexed files to the (a) Indexed Search Engine (indexed_search) system extension; (b) unspecified test scripts in the ADOdb system extension; and (c) unspecified vectors in the Workspace module.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48137">typo3-adodb-xss(48137)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48136">typo3-workspace-xss(48136)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48135">typo3-indexedsearchengine-xss(48135)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48133">typo3-library-session-hijacking(48133)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33376">33376</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1711">DSA-1711</ref>
            <ref source="CONFIRM" url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33679">33679</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33617" adv="1">33617</ref>
        </refs>
        <vuln_soft>
            <prod vendor="typo3" name="typo3">
                <vers num="4.0" />
                <vers num="4.0.1" />
                <vers num="4.0.2" />
                <vers num="4.0.3" />
                <vers num="4.0.4" />
                <vers num="4.0.5" />
                <vers num="4.0.6" />
                <vers num="4.0.7" />
                <vers num="4.0.8" />
                <vers num="4.0.9" />
                <vers edition="beta1" num="4.1.0" />
                <vers edition="rc1" num="4.1.0" />
                <vers num="4.1.1" />
                <vers num="4.1.2" />
                <vers num="4.1.3" />
                <vers num="4.1.4" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
                <vers num="4.1.7" />
                <vers num="4.2.0" />
                <vers num="4.2.1" />
                <vers num="4.2.2" />
                <vers num="4.2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0258" seq="2009-0258" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-05">
        <desc>
            <descript source="cve">The Indexed Search Engine (indexed_search) system extension in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allows remote attackers to execute arbitrary commands via a crafted filename containing shell metacharacters, which is not properly handled by the command-line indexer.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48138">typo3-indexedsearch-command-execution(48138)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33376">33376</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/23/4">[oss-security] 20090123 Re: CVE id request: typo3 SA-2009-001</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1711">DSA-1711</ref>
            <ref source="CONFIRM" url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33679">33679</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33617" adv="1">33617</ref>
        </refs>
        <vuln_soft>
            <prod vendor="typo3" name="typo3">
                <vers num="4.0" />
                <vers num="4.0.1" />
                <vers num="4.0.2" />
                <vers num="4.0.3" />
                <vers num="4.0.4" />
                <vers num="4.0.5" />
                <vers num="4.0.6" />
                <vers num="4.0.7" />
                <vers num="4.0.8" />
                <vers num="4.0.9" />
                <vers edition="beta1" num="4.1.0" />
                <vers edition="rc1" num="4.1.0" />
                <vers num="4.1.1" />
                <vers num="4.1.2" />
                <vers num="4.1.3" />
                <vers num="4.1.4" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
                <vers num="4.1.7" />
                <vers num="4.2.0" />
                <vers num="4.2.1" />
                <vers num="4.2.2" />
                <vers num="4.2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0259" seq="2009-0259" severity="High" type="CVE" published="2009-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2009-04-10">
        <desc>
            <descript source="cve">The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) .doc, (2) .wri, or (3) .rtf Word 97 file that triggers memory corruption, as exploited in the wild in December 2008, as demonstrated by 2008-crash.doc.rar, and a similar issue to CVE-2008-4841.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48213">openoffice-wordprocessor-code-execution(48213)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33383">33383</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/21/9">[oss-security] 20090121 CVE Request -- openoffice.org (CVE-2008-4841)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/6560">6560</ref>
            <ref source="MISC" url="http://milw0rm.com/sploits/2008-crash.doc.rar">http://milw0rm.com/sploits/2008-crash.doc.rar</ref>
        </refs>
        <vuln_soft>
            <prod vendor="openoffice" name="openoffice.org">
                <vers num="1.1.2" />
                <vers num="1.1.3" />
                <vers num="1.1.4" />
                <vers num="1.1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0260" seq="2009-0260" severity="Medium" type="CVE" published="2009-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin before 1.8.1 allow remote attackers to inject arbitrary web script or HTML via an AttachFile action to the WikiSandBox component with (1) the rename parameter or (2) the drawing parameter (aka the basename variable).</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33365">33365</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48126">moinmoin-attachfilepy-xss(48126)</ref>
            <ref source="UBUNTU" url="http://www.ubuntulinux.org/support/documentation/usn/usn-716-1">USN-716-1</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500197/100/0/threaded">20090120 MoinMoin Wiki Engine XSS Vulnerability</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0195" adv="1">ADV-2009-0195</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33755">33755</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33716">33716</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33593" adv="1">33593</ref>
            <ref source="OSVDB" url="http://osvdb.org/51485">51485</ref>
            <ref source="CONFIRM" url="http://moinmo.in/SecurityFixes#moin1.8.1">http://moinmo.in/SecurityFixes#moin1.8.1</ref>
            <ref source="DEBIAN" url="http://lists.debian.org/debian-security-announce/2009/msg00023.html">DSA-1715</ref>
            <ref source="CONFIRM" url="http://hg.moinmo.in/moin/1.8/rev/8cb4d34ccbc1">http://hg.moinmo.in/moin/1.8/rev/8cb4d34ccbc1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="moinmoin" name="moinmoin">
                <vers num="0.1" />
                <vers num="0.10" />
                <vers num="0.11" />
                <vers num="0.2" />
                <vers num="0.3" />
                <vers num="0.7" />
                <vers num="0.8" />
                <vers num="0.9" />
                <vers num="1.0" />
                <vers num="1.1" />
                <vers num="1.2" />
                <vers num="1.2.1" />
                <vers num="1.2.2" />
                <vers num="1.5.0" />
                <vers num="1.5.1" />
                <vers num="1.5.2" />
                <vers num="1.5.3" />
                <vers num="1.5.3_rc1" />
                <vers num="1.5.3_rc2" />
                <vers num="1.5.4" />
                <vers num="1.5.5" />
                <vers num="1.5.5_rc1" />
                <vers num="1.5.5a" />
                <vers num="1.5.6" />
                <vers num="1.5.7" />
                <vers num="1.5.8" />
                <vers num="1.6" />
                <vers num="1.6.0" />
                <vers num="1.6.1" />
                <vers num="1.6.2" />
                <vers num="1.6.3" />
                <vers num="1.7.0" />
                <vers num="1.7.1" />
                <vers num="1.7.2" />
                <vers num="1.7.3" />
                <vers num="1.8.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0261" seq="2009-0261" severity="High" type="CVE" published="2009-01-23" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Stack-based buffer overflow in EffectMatrix Total Video Player 1.31 allows user-assisted attackers to execute arbitrary code via a Skins\DefaultSkin\DefaultSkin.ini file with a large ColumnHeaderSpan value.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48140">totalvideoplayer-defaultskin-bo(48140)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33373">33373</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7839">7839</ref>
        </refs>
        <vuln_soft>
            <prod vendor="effectmatrix" name="total_video_player">
                <vers num="1.31" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0262" seq="2009-0262" severity="High" type="CVE" published="2009-01-23" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Stack-based buffer overflow in Triologic Media Player 7 and 8.0.0.0 allows user-assisted remote attackers to execute arbitrary code via a long string in a .m3u playlist file.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33221">33221</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0097" adv="1">ADV-2009-0097</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33496">33496</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/7737">7737</ref>
        </refs>
        <vuln_soft>
            <prod vendor="trilogic" name="media_player">
                <vers num="7" />
                <vers num="8.0.0.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0263" seq="2009-0263" severity="High" type="CVE" published="2009-01-23" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-05">
        <desc>
            <descript source="cve">Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33226">33226</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0113" adv="1">ADV-2009-0113</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33478">33478</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/7742">7742</ref>
        </refs>
        <vuln_soft>
            <prod vendor="nullsoft" name="winamp">
                <vers num="2.0" />
                <vers num="2.10" />
                <vers num="2.24" />
                <vers num="2.4" />
                <vers num="2.50" />
                <vers num="2.5e" />
                <vers edition="" num="2.60" />
                <vers edition=":lite" num="2.60" />
                <vers edition=":full" num="2.60" />
                <vers edition="" num="2.61" />
                <vers edition=":full" num="2.61" />
                <vers edition="" num="2.62" />
                <vers edition=":standard" num="2.62" />
                <vers edition="" num="2.64" />
                <vers edition=":standard" num="2.64" />
                <vers num="2.65" />
                <vers num="2.6x" />
                <vers edition="" num="2.70" />
                <vers edition=":full" num="2.70" />
                <vers num="2.71" />
                <vers num="2.72" />
                <vers edition="" num="2.73" />
                <vers edition=":full" num="2.73" />
                <vers num="2.74" />
                <vers num="2.75" />
                <vers num="2.76" />
                <vers num="2.77" />
                <vers num="2.78" />
                <vers num="2.79" />
                <vers num="2.7x" />
                <vers num="2.80" />
                <vers num="2.81" />
                <vers num="2.90" />
                <vers num="2.91" />
                <vers num="2.95" />
                <vers num="3.0" />
                <vers num="3.1" />
                <vers num="5.0" />
                <vers num="5.0.1" />
                <vers num="5.0.2" />
                <vers num="5.01" />
                <vers num="5.02" />
                <vers num="5.03" />
                <vers num="5.03a" />
                <vers num="5.04" />
                <vers num="5.05" />
                <vers num="5.06" />
                <vers num="5.07" />
                <vers edition="c" num="5.08" />
                <vers edition="d" num="5.08" />
                <vers edition="e" num="5.08" />
                <vers num="5.08c" />
                <vers num="5.08d" />
                <vers num="5.08e" />
                <vers num="5.09" />
                <vers num="5.091" />
                <vers num="5.093" />
                <vers num="5.094" />
                <vers num="5.1" />
                <vers num="5.11" />
                <vers num="5.111" />
                <vers num="5.112" />
                <vers num="5.12" />
                <vers num="5.13" />
                <vers num="5.2" />
                <vers num="5.21" />
                <vers num="5.22" />
                <vers num="5.23" />
                <vers num="5.24" />
                <vers num="5.3" />
                <vers num="5.31" />
                <vers num="5.32" />
                <vers num="5.33" />
                <vers num="5.34" />
                <vers num="5.35" />
                <vers num="5.36" />
                <vers num="5.5" />
                <vers num="5.51" />
                <vers num="5.52" />
                <vers num="5.53" />
                <vers num="5.54" />
                <vers num="5.541" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0264" seq="2009-0264" severity="High" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-12">
        <desc>
            <descript source="cve">Buffer overflow in the Registry Setting Tool in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier has unknown impact and attack vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html" adv="1">http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48315">systemcast-registrytool-bo(48315)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33644">33644</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fujitsu" name="systemcastwizard_lite">
                <vers num="1.7" />
                <vers num="1.8" />
                <vers num="1.8a" />
                <vers num="1.9" />
                <vers num="2.0" />
                <vers num="2.0a" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0265" seq="2009-0265" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-20">
        <desc>
            <descript source="cve">Internet Systems Consortium (ISC) BIND 9.6.0 and earlier does not properly check the return value from the OpenSSL EVP_VerifyFinal function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077 and CVE-2009-0025.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://www.isc.org/node/373" adv="1">https://www.isc.org/node/373</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:037">MDVSA-2009:037</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0043" adv="1">ADV-2009-0043</ref>
            <ref source="SLACKWARE" url="http://slackware.com/security/viewer.php?l=slackware-security&amp;y=2009&amp;m=slackware-security.540362">SSA:2009-014-02</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33559" adv="1">33559</ref>
            <ref source="MISC" url="http://groups.google.com/group/comp.protocols.dns.bind/browse_thread/thread/49ef622c8329fd33">http://groups.google.com/group/comp.protocols.dns.bind/browse_thread/thread/49ef622c8329fd33</ref>
        </refs>
        <vuln_soft>
            <prod vendor="isc" name="bind">
                <vers num="4" />
                <vers num="4.9" />
                <vers num="4.9.10" />
                <vers num="4.9.2" />
                <vers num="4.9.3" />
                <vers num="4.9.4" />
                <vers edition="p1" num="4.9.5" />
                <vers num="4.9.6" />
                <vers num="4.9.7" />
                <vers num="4.9.8" />
                <vers num="4.9.9" />
                <vers num="8" />
                <vers num="8.1" />
                <vers num="8.1.1" />
                <vers num="8.1.2" />
                <vers edition="p1" num="8.2" />
                <vers num="8.2.1" />
                <vers edition="p1" num="8.2.2" />
                <vers edition="p2" num="8.2.2" />
                <vers edition="p3" num="8.2.2" />
                <vers edition="p4" num="8.2.2" />
                <vers edition="p5" num="8.2.2" />
                <vers edition="p6" num="8.2.2" />
                <vers edition="p7" num="8.2.2" />
                <vers num="8.2.3" />
                <vers num="8.2.3_t1a" />
                <vers num="8.2.3_t9b" />
                <vers num="8.2.4" />
                <vers num="8.2.5" />
                <vers num="8.2.6" />
                <vers num="8.2.7" />
                <vers num="8.3.0" />
                <vers num="8.3.1" />
                <vers num="8.3.2" />
                <vers num="8.3.3" />
                <vers num="8.3.4" />
                <vers num="8.3.5" />
                <vers num="8.3.6" />
                <vers num="8.4" />
                <vers num="8.4.1" />
                <vers num="8.4.4" />
                <vers num="8.4.5" />
                <vers num="8.4.7" />
                <vers num="9.0" />
                <vers num="9.0.1" />
                <vers num="9.1" />
                <vers num="9.1.1" />
                <vers num="9.1.2" />
                <vers num="9.1.3" />
                <vers num="9.2" />
                <vers num="9.2.0" />
                <vers num="9.2.1" />
                <vers edition="p3" num="9.2.2" />
                <vers num="9.2.3" />
                <vers num="9.2.4" />
                <vers num="9.2.5" />
                <vers num="9.2.6" />
                <vers num="9.2.7" />
                <vers num="9.2.9" />
                <vers num="9.3" />
                <vers num="9.3.0" />
                <vers num="9.3.1" />
                <vers num="9.3.2" />
                <vers num="9.3.3" />
                <vers edition="windows" num="9.3.5-p2-w1" />
                <vers num="9.4" />
                <vers edition="rc1" num="9.4.0" />
                <vers num="9.4.0a1" />
                <vers num="9.4.0a2" />
                <vers num="9.4.0a3" />
                <vers num="9.4.0a4" />
                <vers num="9.4.0a5" />
                <vers num="9.4.0a6" />
                <vers num="9.4.0b1" />
                <vers num="9.4.0b2" />
                <vers num="9.4.0b3" />
                <vers num="9.4.0b4" />
                <vers num="9.4.1" />
                <vers num="9.4.2" />
                <vers edition="rc1" num="9.4.3" />
                <vers num="9.4.3b1" />
                <vers num="9.4.3b2" />
                <vers num="9.4.3b3" />
                <vers edition="rc1" num="9.5.0" />
                <vers num="9.5.0-p1" />
                <vers num="9.5.0-p2" />
                <vers num="9.5.0-p2-w1" />
                <vers num="9.5.0-p2-w2" />
                <vers num="9.5.0a5" />
                <vers num="9.5.0a6" />
                <vers num="9.5.0a7" />
                <vers num="9.5.0b1" />
                <vers num="9.5.0b2" />
                <vers num="9.5.0b3" />
                <vers edition="rc1" num="9.5.1" />
                <vers edition="rc2" num="9.5.1" />
                <vers num="9.5.1b1" />
                <vers num="9.5.1b2" />
                <vers num="9.5.1b3" />
                <vers edition="p1" num="9.6.0" prev="1" />
                <vers edition="rc1" num="9.6.0" prev="1" />
                <vers edition="rc2" num="9.6.0" prev="1" />
                <vers num="9.6.0a1" />
                <vers num="9.6.0b1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0266" seq="2009-0266" severity="High" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-26">
        <desc>
            <descript source="cve">Stack-based buffer overflow in Triologic Media Player 8.0.0.0 allows user-assisted remote attackers to execute arbitrary code via a long string in a .m3l playlist file.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33496" adv="1">33496</ref>
        </refs>
        <vuln_soft>
            <prod vendor="trilogic" name="media_player">
                <vers num="8.0.0.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0267" seq="2009-0267" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="5.0" modified="2009-03-04">
        <desc>
            <descript source="cve">libike in Sun Solaris 9 and 10, and OpenSolaris before snv_100, does not properly check packets, which allows remote attackers to cause a denial of service (in.iked daemon crash) via an unspecified IKE packet, a different vulnerability than CVE-2007-2989.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33407">33407</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-247406-1" adv="1">247406</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-113451-15-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-113451-15-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48178">sun-solaris-libike-dos(48178)</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-032.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-032.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33702">33702</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6116">oval:org.mitre.oval:def:6116</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_01" />
                <vers edition=":sparc" num="snv_01" />
                <vers edition=":x86" num="snv_01" />
                <vers edition="" num="snv_02" />
                <vers edition=":x86" num="snv_02" />
                <vers edition=":sparc" num="snv_02" />
                <vers edition="" num="snv_03" />
                <vers edition=":sparc" num="snv_03" />
                <vers edition=":x86" num="snv_03" />
                <vers edition="" num="snv_04" />
                <vers edition=":sparc" num="snv_04" />
                <vers edition=":x86" num="snv_04" />
                <vers edition="" num="snv_05" />
                <vers edition=":sparc" num="snv_05" />
                <vers edition=":x86" num="snv_05" />
                <vers edition="" num="snv_06" />
                <vers edition=":sparc" num="snv_06" />
                <vers edition=":x86" num="snv_06" />
                <vers edition="" num="snv_07" />
                <vers edition=":sparc" num="snv_07" />
                <vers edition=":x86" num="snv_07" />
                <vers edition="" num="snv_08" />
                <vers edition=":sparc" num="snv_08" />
                <vers edition=":x86" num="snv_08" />
                <vers edition="" num="snv_09" />
                <vers edition=":sparc" num="snv_09" />
                <vers edition=":x86" num="snv_09" />
                <vers edition="" num="snv_10" />
                <vers edition=":x86" num="snv_10" />
                <vers edition=":sparc" num="snv_10" />
                <vers edition="" num="snv_11" />
                <vers edition=":sparc" num="snv_11" />
                <vers edition="" num="snv_12" />
                <vers edition=":sparc" num="snv_12" />
                <vers edition="" num="snv_13" />
                <vers edition=":sparc" num="snv_13" />
                <vers edition="" num="snv_14" />
                <vers edition=":sparc" num="snv_14" />
                <vers edition="" num="snv_15" />
                <vers edition=":sparc" num="snv_15" />
                <vers edition="" num="snv_16" />
                <vers edition=":sparc" num="snv_16" />
                <vers edition="" num="snv_17" />
                <vers edition=":sparc" num="snv_17" />
                <vers edition="" num="snv_18" />
                <vers edition=":sparc" num="snv_18" />
                <vers edition="" num="snv_19" />
                <vers edition=":sparc" num="snv_19" />
                <vers edition="" num="snv_20" />
                <vers edition=":sparc" num="snv_20" />
                <vers edition="" num="snv_21" />
                <vers edition=":sparc" num="snv_21" />
                <vers edition=":x86" num="snv_21" />
                <vers edition="" num="snv_22" />
                <vers edition=":sparc" num="snv_22" />
                <vers edition=":x86" num="snv_22" />
                <vers edition="" num="snv_23" />
                <vers edition=":x86" num="snv_23" />
                <vers edition=":sparc" num="snv_23" />
                <vers edition="" num="snv_24" />
                <vers edition=":x86" num="snv_24" />
                <vers edition=":sparc" num="snv_24" />
                <vers edition="" num="snv_25" />
                <vers edition=":sparc" num="snv_25" />
                <vers edition=":x86" num="snv_25" />
                <vers edition="" num="snv_26" />
                <vers edition=":sparc" num="snv_26" />
                <vers edition=":x86" num="snv_26" />
                <vers edition="" num="snv_27" />
                <vers edition=":sparc" num="snv_27" />
                <vers edition=":x86" num="snv_27" />
                <vers edition="" num="snv_28" />
                <vers edition=":sparc" num="snv_28" />
                <vers edition=":x86" num="snv_28" />
                <vers edition="" num="snv_29" />
                <vers edition=":x86" num="snv_29" />
                <vers edition=":sparc" num="snv_29" />
                <vers edition="" num="snv_30" />
                <vers edition=":x86" num="snv_30" />
                <vers edition=":sparc" num="snv_30" />
                <vers edition="" num="snv_31" />
                <vers edition=":sparc" num="snv_31" />
                <vers edition=":x86" num="snv_31" />
                <vers edition="" num="snv_32" />
                <vers edition=":sparc" num="snv_32" />
                <vers edition=":x86" num="snv_32" />
                <vers edition="" num="snv_33" />
                <vers edition=":sparc" num="snv_33" />
                <vers edition=":x86" num="snv_33" />
                <vers edition="" num="snv_34" />
                <vers edition=":sparc" num="snv_34" />
                <vers edition=":x86" num="snv_34" />
                <vers edition="" num="snv_35" />
                <vers edition=":sparc" num="snv_35" />
                <vers edition=":x86" num="snv_35" />
                <vers edition="" num="snv_36" />
                <vers edition=":sparc" num="snv_36" />
                <vers edition=":x86" num="snv_36" />
                <vers edition="" num="snv_37" />
                <vers edition=":x86" num="snv_37" />
                <vers edition=":sparc" num="snv_37" />
                <vers edition="" num="snv_38" />
                <vers edition=":x86" num="snv_38" />
                <vers edition=":sparc" num="snv_38" />
                <vers edition="" num="snv_39" />
                <vers edition=":x86" num="snv_39" />
                <vers edition=":sparc" num="snv_39" />
                <vers edition="" num="snv_40" />
                <vers edition=":x86" num="snv_40" />
                <vers edition=":sparc" num="snv_40" />
                <vers edition="" num="snv_41" />
                <vers edition=":sparc" num="snv_41" />
                <vers edition=":x86" num="snv_41" />
                <vers edition="" num="snv_42" />
                <vers edition=":sparc" num="snv_42" />
                <vers edition=":x86" num="snv_42" />
                <vers edition="" num="snv_43" />
                <vers edition=":sparc" num="snv_43" />
                <vers edition=":x86" num="snv_43" />
                <vers edition="" num="snv_44" />
                <vers edition=":sparc" num="snv_44" />
                <vers edition=":x86" num="snv_44" />
                <vers edition="" num="snv_45" />
                <vers edition=":sparc" num="snv_45" />
                <vers edition=":x86" num="snv_45" />
                <vers edition="" num="snv_46" />
                <vers edition=":x86" num="snv_46" />
                <vers edition=":sparc" num="snv_46" />
                <vers edition="" num="snv_47" />
                <vers edition=":sparc" num="snv_47" />
                <vers edition=":x86" num="snv_47" />
                <vers edition="" num="snv_48" />
                <vers edition=":sparc" num="snv_48" />
                <vers edition=":x86" num="snv_48" />
                <vers edition="" num="snv_49" />
                <vers edition=":x86" num="snv_49" />
                <vers edition=":sparc" num="snv_49" />
                <vers edition="" num="snv_50" />
                <vers edition=":sparc" num="snv_50" />
                <vers edition=":x86" num="snv_50" />
                <vers edition="" num="snv_51" />
                <vers edition=":x86" num="snv_51" />
                <vers edition=":sparc" num="snv_51" />
                <vers edition="" num="snv_52" />
                <vers edition=":sparc" num="snv_52" />
                <vers edition=":x86" num="snv_52" />
                <vers edition="" num="snv_53" />
                <vers edition=":sparc" num="snv_53" />
                <vers edition=":x86" num="snv_53" />
                <vers edition="" num="snv_54" />
                <vers edition=":sparc" num="snv_54" />
                <vers edition=":x86" num="snv_54" />
                <vers edition="" num="snv_55" />
                <vers edition=":sparc" num="snv_55" />
                <vers edition=":x86" num="snv_55" />
                <vers edition="" num="snv_56" />
                <vers edition=":x86" num="snv_56" />
                <vers edition=":sparc" num="snv_56" />
                <vers edition="" num="snv_57" />
                <vers edition=":sparc" num="snv_57" />
                <vers edition=":x86" num="snv_57" />
                <vers edition="" num="snv_58" />
                <vers edition=":x86" num="snv_58" />
                <vers edition=":sparc" num="snv_58" />
                <vers edition="" num="snv_59" />
                <vers edition=":sparc" num="snv_59" />
                <vers edition=":x86" num="snv_59" />
                <vers edition="" num="snv_60" />
                <vers edition=":x86" num="snv_60" />
                <vers edition=":sparc" num="snv_60" />
                <vers edition="" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" prev="1" />
                <vers edition=":sparc" num="snv_99" prev="1" />
                <vers edition=":x86" num="snv_99" prev="1" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
                <vers edition="" num="9" />
                <vers edition=":sparc" num="9" />
                <vers edition=":x86" num="9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0268" seq="2009-0268" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="4.9" modified="2009-03-04">
        <desc>
            <descript source="cve">Race condition in the pseudo-terminal (aka pty) driver module in Sun Solaris 8 through 10, and OpenSolaris before snv_103, allows local users to cause a denial of service (panic) via unspecified vectors related to lack of "properly sequenced code" in ptc and ptsl.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33406">33406</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-249586-1" adv="1">249586</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-113685-07-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-113685-07-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48179">solaris-pseudo-terminal-dos(48179)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021640">1021640</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-034.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-034.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33708">33708</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6061">oval:org.mitre.oval:def:6061</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_01" />
                <vers edition=":sparc" num="snv_01" />
                <vers edition=":x86" num="snv_01" />
                <vers edition="" num="snv_02" />
                <vers edition=":x86" num="snv_02" />
                <vers edition=":sparc" num="snv_02" />
                <vers edition="" num="snv_03" />
                <vers edition=":sparc" num="snv_03" />
                <vers edition=":x86" num="snv_03" />
                <vers edition="" num="snv_04" />
                <vers edition=":sparc" num="snv_04" />
                <vers edition=":x86" num="snv_04" />
                <vers edition="" num="snv_05" />
                <vers edition=":sparc" num="snv_05" />
                <vers edition=":x86" num="snv_05" />
                <vers edition="" num="snv_06" />
                <vers edition=":x86" num="snv_06" />
                <vers edition=":sparc" num="snv_06" />
                <vers edition="" num="snv_07" />
                <vers edition=":sparc" num="snv_07" />
                <vers edition=":x86" num="snv_07" />
                <vers edition="" num="snv_08" />
                <vers edition=":sparc" num="snv_08" />
                <vers edition=":x86" num="snv_08" />
                <vers edition="" num="snv_09" />
                <vers edition=":sparc" num="snv_09" />
                <vers edition=":x86" num="snv_09" />
                <vers edition="" num="snv_10" />
                <vers edition=":x86" num="snv_10" />
                <vers edition=":sparc" num="snv_10" />
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" prev="1" />
                <vers edition=":sparc" num="snv_102" prev="1" />
                <vers edition=":x86" num="snv_102" prev="1" />
                <vers edition="" num="snv_11" />
                <vers edition=":sparc" num="snv_11" />
                <vers edition=":x86" num="snv_11" />
                <vers edition="" num="snv_12" />
                <vers edition=":x86" num="snv_12" />
                <vers edition=":sparc" num="snv_12" />
                <vers edition="" num="snv_13" />
                <vers edition=":sparc" num="snv_13" />
                <vers edition=":x86" num="snv_13" />
                <vers edition="" num="snv_14" />
                <vers edition=":x86" num="snv_14" />
                <vers edition=":sparc" num="snv_14" />
                <vers edition="" num="snv_15" />
                <vers edition=":x86" num="snv_15" />
                <vers edition=":sparc" num="snv_15" />
                <vers edition="" num="snv_16" />
                <vers edition=":sparc" num="snv_16" />
                <vers edition=":x86" num="snv_16" />
                <vers edition="" num="snv_17" />
                <vers edition=":sparc" num="snv_17" />
                <vers edition=":x86" num="snv_17" />
                <vers edition="" num="snv_18" />
                <vers edition=":x86" num="snv_18" />
                <vers edition=":sparc" num="snv_18" />
                <vers edition="" num="snv_19" />
                <vers edition=":x86" num="snv_19" />
                <vers edition=":sparc" num="snv_19" />
                <vers edition="" num="snv_20" />
                <vers edition=":x86" num="snv_20" />
                <vers edition=":sparc" num="snv_20" />
                <vers edition="" num="snv_21" />
                <vers edition=":x86" num="snv_21" />
                <vers edition=":sparc" num="snv_21" />
                <vers edition="" num="snv_22" />
                <vers edition=":sparc" num="snv_22" />
                <vers edition=":x86" num="snv_22" />
                <vers edition="" num="snv_23" />
                <vers edition=":sparc" num="snv_23" />
                <vers edition=":x86" num="snv_23" />
                <vers edition="" num="snv_24" />
                <vers edition=":sparc" num="snv_24" />
                <vers edition=":x86" num="snv_24" />
                <vers edition="" num="snv_25" />
                <vers edition=":sparc" num="snv_25" />
                <vers edition=":x86" num="snv_25" />
                <vers edition="" num="snv_26" />
                <vers edition=":x86" num="snv_26" />
                <vers edition=":sparc" num="snv_26" />
                <vers edition="" num="snv_27" />
                <vers edition=":x86" num="snv_27" />
                <vers edition=":sparc" num="snv_27" />
                <vers edition="" num="snv_28" />
                <vers edition=":sparc" num="snv_28" />
                <vers edition=":x86" num="snv_28" />
                <vers edition="" num="snv_29" />
                <vers edition=":sparc" num="snv_29" />
                <vers edition=":x86" num="snv_29" />
                <vers edition="" num="snv_30" />
                <vers edition=":x86" num="snv_30" />
                <vers edition=":sparc" num="snv_30" />
                <vers edition="" num="snv_31" />
                <vers edition=":sparc" num="snv_31" />
                <vers edition=":x86" num="snv_31" />
                <vers edition="" num="snv_32" />
                <vers edition=":sparc" num="snv_32" />
                <vers edition=":x86" num="snv_32" />
                <vers edition="" num="snv_33" />
                <vers edition=":sparc" num="snv_33" />
                <vers edition=":x86" num="snv_33" />
                <vers edition="" num="snv_34" />
                <vers edition=":sparc" num="snv_34" />
                <vers edition=":x86" num="snv_34" />
                <vers edition="" num="snv_35" />
                <vers edition=":sparc" num="snv_35" />
                <vers edition=":x86" num="snv_35" />
                <vers edition="" num="snv_36" />
                <vers edition=":sparc" num="snv_36" />
                <vers edition=":x86" num="snv_36" />
                <vers edition="" num="snv_37" />
                <vers edition=":x86" num="snv_37" />
                <vers edition=":sparc" num="snv_37" />
                <vers edition="" num="snv_38" />
                <vers edition=":x86" num="snv_38" />
                <vers edition=":sparc" num="snv_38" />
                <vers edition="" num="snv_39" />
                <vers edition=":sparc" num="snv_39" />
                <vers edition=":x86" num="snv_39" />
                <vers edition="" num="snv_40" />
                <vers edition=":x86" num="snv_40" />
                <vers edition=":sparc" num="snv_40" />
                <vers edition="" num="snv_41" />
                <vers edition=":sparc" num="snv_41" />
                <vers edition=":x86" num="snv_41" />
                <vers edition="" num="snv_42" />
                <vers edition=":sparc" num="snv_42" />
                <vers edition=":x86" num="snv_42" />
                <vers edition="" num="snv_43" />
                <vers edition=":sparc" num="snv_43" />
                <vers edition=":x86" num="snv_43" />
                <vers edition="" num="snv_44" />
                <vers edition=":sparc" num="snv_44" />
                <vers edition=":x86" num="snv_44" />
                <vers edition="" num="snv_45" />
                <vers edition=":sparc" num="snv_45" />
                <vers edition=":x86" num="snv_45" />
                <vers edition="" num="snv_46" />
                <vers edition=":x86" num="snv_46" />
                <vers edition=":sparc" num="snv_46" />
                <vers edition="" num="snv_47" />
                <vers edition=":sparc" num="snv_47" />
                <vers edition=":x86" num="snv_47" />
                <vers edition="" num="snv_48" />
                <vers edition=":sparc" num="snv_48" />
                <vers edition=":x86" num="snv_48" />
                <vers edition="" num="snv_49" />
                <vers edition=":sparc" num="snv_49" />
                <vers edition=":x86" num="snv_49" />
                <vers edition="" num="snv_50" />
                <vers edition=":sparc" num="snv_50" />
                <vers edition=":x86" num="snv_50" />
                <vers edition="" num="snv_51" />
                <vers edition=":sparc" num="snv_51" />
                <vers edition=":x86" num="snv_51" />
                <vers edition="" num="snv_52" />
                <vers edition=":sparc" num="snv_52" />
                <vers edition=":x86" num="snv_52" />
                <vers edition="" num="snv_53" />
                <vers edition=":sparc" num="snv_53" />
                <vers edition=":x86" num="snv_53" />
                <vers edition="" num="snv_54" />
                <vers edition=":x86" num="snv_54" />
                <vers edition=":sparc" num="snv_54" />
                <vers edition="" num="snv_55" />
                <vers edition=":sparc" num="snv_55" />
                <vers edition=":x86" num="snv_55" />
                <vers edition="" num="snv_56" />
                <vers edition=":x86" num="snv_56" />
                <vers edition=":sparc" num="snv_56" />
                <vers edition="" num="snv_57" />
                <vers edition=":sparc" num="snv_57" />
                <vers edition=":x86" num="snv_57" />
                <vers edition="" num="snv_58" />
                <vers edition=":x86" num="snv_58" />
                <vers edition=":sparc" num="snv_58" />
                <vers edition="" num="snv_59" />
                <vers edition=":sparc" num="snv_59" />
                <vers edition=":x86" num="snv_59" />
                <vers edition="" num="snv_60" />
                <vers edition=":x86" num="snv_60" />
                <vers edition=":sparc" num="snv_60" />
                <vers edition="" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
                <vers edition="" num="8" />
                <vers edition=":sparc" num="8" />
                <vers edition=":x86" num="8" />
                <vers edition="" num="9" />
                <vers edition=":sparc" num="9" />
                <vers edition=":x86" num="9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0269" seq="2009-0269" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="4.9" modified="2009-06-12">
        <desc>
            <descript source="cve">fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33412">33412</ref>
            <ref source="MLIST" url="https://lists.launchpad.net/ecryptfs-devel/msg00011.html">[ecryptfs-devel] 20081222 Re: [PATCH, v5] eCryptfs: check readlink result was not an error before using it</ref>
            <ref source="MLIST" url="https://lists.launchpad.net/ecryptfs-devel/msg00010.html">[ecryptfs-devel] 20081222 Re: [PATCH, v5] eCryptfs: check readlink result was not an error before using it</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48188">linux-kernel-readlink-bo(48188)</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-751-1">USN-751-1</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0360.html">RHSA-2009:0360</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0326.html">RHSA-2009:0326</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:118">MDVSA-2009:118</ref>
            <ref source="CONFIRM" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.1">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.1</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1787">DSA-1787</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1749">DSA-1749</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35394">35394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35390">35390</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34981">34981</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34502">34502</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34394">34394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33758">33758</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html">SUSE-SA:2009:031</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html">SUSE-SA:2009:030</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.html">SUSE-SA:2009:010</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=a17d5232de7b53d34229de79ec22f4bb04adb7e4">http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=a17d5232de7b53d34229de79ec22f4bb04adb7e4</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers num="2.6.23" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.23_rc1" />
                <vers num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24.7" />
                <vers num="2.6.24_rc1" />
                <vers num="2.6.24_rc4" />
                <vers num="2.6.24_rc5" />
                <vers edition="" num="2.6.25" />
                <vers edition=":x86_64" num="2.6.25" />
                <vers edition="" num="2.6.25.1" />
                <vers edition=":x86_64" num="2.6.25.1" />
                <vers edition="" num="2.6.25.10" />
                <vers edition=":x86_64" num="2.6.25.10" />
                <vers edition="" num="2.6.25.11" />
                <vers edition=":x86_64" num="2.6.25.11" />
                <vers edition="" num="2.6.25.12" />
                <vers edition=":x86_64" num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.15" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers edition="" num="2.6.25.2" />
                <vers edition=":x86_64" num="2.6.25.2" />
                <vers edition="" num="2.6.25.3" />
                <vers edition=":x86_64" num="2.6.25.3" />
                <vers edition="" num="2.6.25.4" />
                <vers edition=":x86_64" num="2.6.25.4" />
                <vers edition="" num="2.6.25.5" />
                <vers edition=":x86_64" num="2.6.25.5" />
                <vers edition="" num="2.6.25.6" />
                <vers edition=":x86_64" num="2.6.25.6" />
                <vers edition="" num="2.6.25.7" />
                <vers edition=":x86_64" num="2.6.25.7" />
                <vers edition="" num="2.6.25.8" />
                <vers edition=":x86_64" num="2.6.25.8" />
                <vers edition="" num="2.6.25.9" />
                <vers edition=":x86_64" num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.27" />
                <vers num="2.6.28" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0270" seq="2009-0270" severity="High" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="10.0" modified="2009-03-06">
        <desc>
            <descript source="cve">Stack-based buffer overflow in PXEService.exe in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to execute arbitrary code via a large PXE protocol request in a UDP packet.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html" adv="1">http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html</ref>
            <ref source="MISC" url="http://www.wintercore.com/advisories/advisory_W010109.html">http://www.wintercore.com/advisories/advisory_W010109.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33342">33342</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500172/100/0/threaded">20090119 [Wintercore Research ] Fujitsu SystemcastWizard Lite PXEService Remote Buffer Overflow.</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0176" adv="1">ADV-2009-0176</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33594" adv="1">33594</ref>
            <ref source="OSVDB" url="http://osvdb.org/51486">51486</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fujitsu" name="systemcastwizard_lite">
                <vers num="1.7" />
                <vers num="1.8" />
                <vers num="1.8a" />
                <vers num="1.9" />
                <vers num="2.0" />
                <vers num="2.0a" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0271" seq="2009-0271" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-26">
        <desc>
            <descript source="cve">Directory traversal vulnerability in the TFTP service in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to read arbitrary files via directory traversal sequences in unspecified vectors.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33344">33344</ref>
            <ref source="CONFIRM" patch="1" url="http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html" adv="1">http://www.fujitsu.com/global/services/computing/server/primequest/products/os/windows-server-2008-2.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0176" adv="1">ADV-2009-0176</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33594" adv="1">33594</ref>
            <ref source="OSVDB" url="http://osvdb.org/51487">51487</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fujitsu" name="systemcastwizard_lite">
                <vers num="1.7" />
                <vers num="1.8" />
                <vers num="1.8a" />
                <vers num="1.9" />
                <vers num="2.0" />
                <vers num="2.0a" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2009-0275" seq="2009-0275" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="6.5" modified="2009-01-26">
        <desc>
            <descript source="cve">Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code into config/header via the header parameter.  NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2009-0250. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="OSVDB" url="http://www.osvdb.org/51412">51412</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33531">33531</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ryneezy" name="phosheezy">
                <vers num="0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2009-0277" seq="2009-0277" severity="High" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="7.8" modified="2009-01-27">
        <desc>
            <descript source="cve">Unspecified vulnerability in the kernel in OpenSolaris snv_100 through snv_102 on the Sun UltraSPARC T2 and T2+ sun4v platforms allows local users to cause a denial of service (panic) via unknown vectors.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-250066-1" adv="1">250066</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48164">solaris-ultrasparct2-dos(48164)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33398">33398</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0209" adv="1">ADV-2009-0209</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":sparc" num="snv_102" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0278" seq="2009-0278" severity="Medium" type="CVE" published="2009-01-26" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-05">
        <desc>
            <descript source="cve">Sun Java System Application Server (AS) 8.1 and 8.2 allows remote attackers to read the Web Application configuration files in the (1) WEB-INF or (2) META-INF directory via a malformed request.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-245446-1" adv="1">245446</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-119166-35-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-119166-35-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48161">javasystem-webinf-metainf-info-disclosure(48161)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33397">33397</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0208" adv="1">ADV-2009-0208</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33725">33725</ref>
            <ref source="OSVDB" url="http://osvdb.org/51604">51604</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_application_server">
                <vers edition="" num="8.1" />
                <vers edition=":x86" num="8.1" />
                <vers edition=":windows" num="8.1" />
                <vers edition=":linux" num="8.1" />
                <vers edition=":sparc" num="8.1" />
                <vers edition="" num="8.2" />
                <vers edition=":linux" num="8.2" />
                <vers edition=":windows" num="8.2" />
                <vers edition=":x86" num="8.2" />
                <vers edition=":sparc" num="8.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0279" seq="2009-0279" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-27">
        <desc>
            <descript source="cve">SQL injection vulnerability in comentar.php in Pardal CMS 0.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48175">pardalcms-comentar-sql-injection(48175)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33404">33404</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7851">7851</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pardalcms" name="pardalcms">
                <vers num="0.01b" />
                <vers num="0.01c" />
                <vers num="0.1.1" />
                <vers num="0.1.2" />
                <vers num="0.1.3" />
                <vers num="0.1a" />
                <vers num="0.2.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0280" seq="2009-0280" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-27">
        <desc>
            <descript source="cve">Asp Project Management 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the crypt cookie to 1.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48172">aspproject-cookie-security-bypass(48172)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33401">33401</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500292/100/0/threaded">20090122 Asp-project Cookie Handling</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7850">7850</ref>
        </refs>
        <vuln_soft>
            <prod vendor="asp-project" name="asp-project">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0281" seq="2009-0281" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-27">
        <desc>
            <descript source="cve">SQL injection vulnerability in login.aspx in WarHound Walking Club allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48061">walkingclub-login-sql-injection(48061)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33317">33317</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7802">7802</ref>
        </refs>
        <vuln_soft>
            <prod vendor="warhound" name="walking_club">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0282" seq="2009-0282" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Integer overflow in Ralink Technology USB wireless adapter (RT73) 3.08 for Windows, and other wireless card drivers including rt2400, rt2500, rt2570, and rt61, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Probe Request packet with a long SSID, possibly related to an integer signedness error.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33340">33340</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500168/100/0/threaded">20090118 Ralinktech wireless cards drivers vulnerability</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1714">DSA-1714</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1713">DSA-1713</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1712">DSA-1712</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200907-08.xml">GLSA-200907-08</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35743">35743</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33699">33699</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33592" adv="1">33592</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=512995">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=512995</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ralinktech" name="rt73">
                <vers num="3.08" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0283" seq="2009-0283" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="4.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in err.asp in Oblog allows remote attackers to inject arbitrary web script or HTML via the message parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33416">33416</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500397/100/0/threaded">20090124 Re: Oblog XSS valnerability</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500349/100/0/threaded">20090123 Oblog XSS valnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="aobosoft" name="oblog">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0284" seq="2009-0284" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-06-03">
        <desc>
            <descript source="cve">SQL injection vulnerability in category.php in Flax Article Manager 1.1 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33422">33422</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7862">7862</ref>
            <ref source="CONFIRM" url="http://www.flaxweb.com/products/articles">http://www.flaxweb.com/products/articles</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33625" adv="1">33625</ref>
        </refs>
        <vuln_soft>
            <prod vendor="flaxweb" name="flax_article_manager">
                <vers num="1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0285" seq="2009-0285" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-27">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in error.asp in BBSXP 5.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the message parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48187">bbsxp-error-xss(48187)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33411">33411</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500336/100/0/threaded">20090123 BBSxp Xss vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bbsxp" name="bbsxp">
                <vers num="5.13" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:N/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2009-0286" seq="2009-0286" severity="Low" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="2.6" modified="2009-02-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in upgrade/index.php in OpenGoo 1.1, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the form_data[script_class] parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33421">33421</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7863">7863</ref>
            <ref source="OSVDB" url="http://osvdb.org/51635">51635</ref>
        </refs>
        <vuln_soft>
            <prod vendor="opengoo" name="opengoo">
                <vers num="1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0287" seq="2009-0287" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in lib/patUser.php in KEEP Toolkit before 2.5.1 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33425">33425</ref>
            <ref source="CONFIRM" patch="1" url="http://sourceforge.net/project/shownotes.php?release_id=655845&amp;group_id=227492" adv="1">http://sourceforge.net/project/shownotes.php?release_id=655845&amp;group_id=227492</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33652" adv="1">33652</ref>
            <ref source="OSVDB" url="http://osvdb.org/51623">51623</ref>
            <ref source="CONFIRM" url="http://keeptoolkit.svn.sourceforge.net/viewvc/keeptoolkit?view=rev&amp;revision=56">http://keeptoolkit.svn.sourceforge.net/viewvc/keeptoolkit?view=rev&amp;revision=56</ref>
        </refs>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0288" seq="2009-0288" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-27">
        <desc>
            <descript source="cve">Directory traversal vulnerability in k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to read arbitrary files outside the TFTP root directory via directory traversal sequences in a GET request.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33287">33287</ref>
            <ref source="CONFIRM" patch="1" url="http://sourceforge.net/forum/forum.php?forum_id=894598">http://sourceforge.net/forum/forum.php?forum_id=894598</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48019">tftputil-tftpget-directory-traversal(48019)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500106/100/0/threaded">20090115 TFTPUtil GUI TFTP Directory Traversal</ref>
            <ref source="MISC" url="http://www.princeofnigeria.org/blogs/index.php/2009/01/14/tftputil-gui-tftp-directory-traversal">http://www.princeofnigeria.org/blogs/index.php/2009/01/14/tftputil-gui-tftp-directory-traversal</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33561" adv="1">33561</ref>
        </refs>
        <vuln_soft>
            <prod vendor="windows_tftp_utility" name="tftputil">
                <vers num="1.2.0" />
                <vers num="1.3.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0289" seq="2009-0289" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-27">
        <desc>
            <descript source="cve">k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to cause a denial of service (service crash) via a long filename in a crafted request.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33289">33289</ref>
            <ref source="MISC" patch="1" url="http://sourceforge.net/forum/forum.php?forum_id=894598">http://sourceforge.net/forum/forum.php?forum_id=894598</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500107/100/0/threaded">20090115 TFTPUtil GUI TFTP Server Denial of Service Vulnerability</ref>
            <ref source="MISC" url="http://www.princeofnigeria.org/blogs/index.php/2009/01/14/tftputil-gui-tftp-server-denial-of-servi?blog=1">http://www.princeofnigeria.org/blogs/index.php/2009/01/14/tftputil-gui-tftp-server-denial-of-servi?blog=1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="windows_tftp_utility" name="tftputil">
                <vers num="1.2.0" />
                <vers num="1.3.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0290" seq="2009-0290" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-27">
        <desc>
            <descript source="cve">Directory traversal vulnerability in common.php in SIR GNUBoard 4.31.03 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the g4_path parameter.  NOTE: in some environments, this can be leveraged for remote code execution via a data: URI or a UNC share pathname.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48015">gnuboard-common-file-include(48015)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33304">33304</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7792">7792</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33564" adv="1">33564</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sir" name="gnuboard">
                <vers num="4.31.03" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0032" seq="2009-0032" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="6.9" modified="2009-01-28">
        <desc>
            <descript source="cve">CUPS on Mandriva Linux 2008.0, 2008.1, 2009.0, Corporate Server (CS) 3.0 and 4.0, and Multi Network Firewall (MNF) 2.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/pdf.log temporary file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48210">cups-pdflog-symlink(48210)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33418">33418</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:029" adv="1">MDVSA-2009:029</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:028">MDVSA-2009:028</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:027" adv="1">MDVSA-2009:027</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021637">1021637</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="cups">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0291" seq="2009-0291" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in fc.php in OpenX 2.6.3 allows remote attackers to include and execute arbitrary files via a .. (dot dot) in the MAX_type parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33458">33458</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500411/100/0/threaded">20090127 OpenX 2.6.3 - Local File Inclusion</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7883">7883</ref>
        </refs>
        <vuln_soft>
            <prod vendor="openx" name="openx">
                <vers num="2.6.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0292" seq="2009-0292" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in show_cat2.php in SHOP-INET 4 allows remote attackers to execute arbitrary SQL commands via the grid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7874">7874</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33660" adv="1">33660</ref>
            <ref source="OSVDB" url="http://osvdb.org/51615">51615</ref>
        </refs>
        <vuln_soft>
            <prod vendor="shop-inet" name="shop-inet">
                <vers num="4.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0293" seq="2009-0293" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in profile_view.php in Wazzum Dating Software, possibly 2.0, allows remote attackers to execute arbitrary SQL commands via the userid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33461">33461</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7877">7877</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33654" adv="1">33654</ref>
            <ref source="OSVDB" url="http://osvdb.org/51625">51625</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wazzum" name="wazzum_dating_software">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0294" seq="2009-0294" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-29">
        <desc>
            <descript source="cve">Multiple PHP remote file inclusion vulnerabilities in WB News 2.0.1, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the config[installdir] parameter to (1) search.php, (2) archive.php, (3) comments.php, and (4) news.php; (5) News.php, (6) SendFriend.php, (7) Archive.php, and (8) Comments.php in base/; and possibly other components, different vectors than CVE-2007-1288.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33434">33434</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500398/100/0/threaded">20090125 WB News v2.0.X Remote File include ..</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33691" adv="1">33691</ref>
        </refs>
        <vuln_soft>
            <prod vendor="webmobo" name="wbnews">
                <vers num="2.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0295" seq="2009-0295" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="6.8" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in Information Technology Light Poll Information (ITLPoll) 2.7 Stable 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33452">33452</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7867">7867</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33666" adv="1">33666</ref>
            <ref source="OSVDB" url="http://osvdb.org/51616">51616</ref>
        </refs>
        <vuln_soft>
            <prod vendor="itlpoll" name="itpoll">
                <vers num="2.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0296" seq="2009-0296" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in shop_display_products.php in Script Toko Online 5.01 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7873">7873</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33661" adv="1">33661</ref>
            <ref source="OSVDB" url="http://osvdb.org/51630">51630</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gempar" name="script_toko_online">
                <vers num="5.01" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0297" seq="2009-0297" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in login_check.asp in ClickAuction allows remote attackers to execute arbitrary SQL commands via the (1) txtEmail and (2) txtPassword parameters.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7880">7880</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33647" adv="1">33647</ref>
            <ref source="OSVDB" url="http://osvdb.org/51626">51626</ref>
        </refs>
        <vuln_soft>
            <prod vendor="clicktech" name="clickauction">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0298" seq="2009-0298" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="9.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Heap-based buffer overflow in MW6 Technologies Barcode ActiveX control (Barcode.MW6Barcode.1, Barcode.dll) 3.0.0.1 allows remote attackers to execute arbitrary code via a long Supplement property.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33451">33451</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7869">7869</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33663" adv="1">33663</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mw6_technologies" name="barcode_activex">
                <vers num="3.0.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0299" seq="2009-0299" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.5" modified="2009-10-03">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in Groone GLinks 2.1 allows remote attackers to execute arbitrary SQL commands via the cat parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33460">33460</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/9236">9236</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7878">7878</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33649" adv="1">33649</ref>
            <ref source="OSVDB" url="http://osvdb.org/51628">51628</ref>
        </refs>
        <vuln_soft>
            <prod vendor="groonesworld" name="glinks">
                <vers num="2.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry reject="1" name="CVE-2009-0300" seq="2009-0300" type="CVE" published="2009-01-27" modified="2009-01-29">
        <desc>
            <descript source="cve">** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: CVE-2006-2636.  Reason: This candidate is a duplicate of CVE-2006-2636.  Notes: All CVE users should reference CVE-2006-2636 instead of this candidate.  All references and descriptions in this candidate have been removed to prevent accidental usage.</descript>
        </desc>
        <refs />
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0301" seq="2009-0301" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-28">
        <desc>
            <descript source="cve">Multiple insecure method vulnerabilities in the FlexCell.Grid ActiveX control (FlexCell.ocx) in FlexCell Grid Control 5.6.9 allow remote attackers to create and overwrite arbitrary files via the (1) SaveFile and (2) ExportToXML methods.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33453">33453</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7868">7868</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33664" adv="1">33664</ref>
        </refs>
        <vuln_soft>
            <prod vendor="grid2000" name="flexcell_grid_control">
                <vers num="5.6.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:S/C:P/I:P/A:P)" CVSS_base_score="4.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.4" name="CVE-2009-0302" seq="2009-0302" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="4.6" modified="2009-02-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in the Downloads 8.0 module for PHP-Nuke, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via the url parameter in the Add operation to modules.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48186">downloads-module-sql-injection(48186)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33410">33410</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500335/100/0/threaded">20090123 PHP-Nuke 8.0 Downloads Blind Sql Injection</ref>
            <ref source="OSVDB" url="http://osvdb.org/51633">51633</ref>
        </refs>
        <vuln_soft>
            <prod vendor="php-nuke" name="downloads_module">
                <vers num="8.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0303" seq="2009-0303" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-28">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Web Help Desk before 9.1.18 allows remote attackers to inject arbitrary web script or HTML via vectors related to "encoded JavaScript" and Helpdesk.woa.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33429">33429</ref>
            <ref source="CONFIRM" url="http://updates.webhelpdesk.com/weblog/updates/StableReleases/2009/01/23/911812309.html" adv="1">http://updates.webhelpdesk.com/weblog/updates/StableReleases/2009/01/23/911812309.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33651" adv="1">33651</ref>
        </refs>
        <vuln_soft>
            <prod vendor="webhelpdesk" name="web_help_desk">
                <vers num="8.0.20" />
                <vers num="8.0.21" />
                <vers num="8.0.22" />
                <vers num="8.2.0" />
                <vers num="8.2.0.1" />
                <vers num="8.2.0.10" />
                <vers num="8.2.0.2" />
                <vers num="8.2.0.3" />
                <vers num="8.2.0.4" />
                <vers num="8.2.0.5" />
                <vers num="8.2.0.6" />
                <vers num="8.2.0.7" />
                <vers num="8.2.0.8" />
                <vers num="8.2.0.9" />
                <vers num="8.2.1.1" />
                <vers num="8.2.1.2" />
                <vers num="8.2.1.3" />
                <vers num="8.2.1.4" />
                <vers num="8.2.1.5" />
                <vers num="8.2.2" />
                <vers num="8.2.3" />
                <vers num="8.2.3.1" />
                <vers num="8.2.3.2" />
                <vers num="8.2.3.3" />
                <vers num="8.2.3.4" />
                <vers num="8.2.4" />
                <vers num="8.2.4.1" />
                <vers num="8.2.4.2" />
                <vers num="8.2.4.3" />
                <vers num="8.3.0.1" />
                <vers num="8.3.0.2" />
                <vers num="8.3.0.3" />
                <vers num="8.3.0.4" />
                <vers num="8.3.0.5" />
                <vers num="8.3.1" />
                <vers num="8.3.1.1" />
                <vers num="8.3.1.2" />
                <vers num="8.3.1.3" />
                <vers num="8.3.2" />
                <vers num="8.3.3" />
                <vers num="8.3.3.1" />
                <vers num="8.3.3.2" />
                <vers num="8.3.3.3" />
                <vers num="8.3.3.4" />
                <vers num="8.3.4.0" />
                <vers num="8.3.4.1" />
                <vers num="8.3.4.2" />
                <vers num="8.3.5.1" />
                <vers num="8.3.5.2" />
                <vers num="8.3.5.3" />
                <vers num="8.3.5.4" />
                <vers num="8.3.5.5" />
                <vers num="8.3.5.6" />
                <vers num="8.3.6" />
                <vers num="8.3.6.1" />
                <vers num="8.4.1.0" />
                <vers num="8.4.1.1" />
                <vers num="8.4.1.2" />
                <vers num="8.4.1.3" />
                <vers num="8.4.1.4" />
                <vers num="8.4.1.5" />
                <vers num="8.4.1.6" />
                <vers num="8.4.1.7" />
                <vers num="8.4.1.8" />
                <vers num="8.4.1.9" />
                <vers num="8.4.2.0" />
                <vers num="8.4.2.1" />
                <vers num="8.4.2.2" />
                <vers num="8.4.2.3" />
                <vers num="8.4.3.0" />
                <vers num="8.4.3.1" />
                <vers num="8.4.3.2" />
                <vers num="8.4.3.3" />
                <vers num="8.4.3.4" />
                <vers num="8.4.3.5" />
                <vers num="8.4.3.6" />
                <vers num="8.4.3.7" />
                <vers num="8.4.4" />
                <vers num="8.4.5" />
                <vers num="8.4.5.1" />
                <vers num="8.4.5.2" />
                <vers num="8.4.6.0" />
                <vers num="8.4.6.1" />
                <vers num="8.4.6.10" />
                <vers num="8.4.6.2" />
                <vers num="8.4.6.3" />
                <vers num="8.4.6.4" />
                <vers num="8.4.6.5" />
                <vers num="8.4.6.6" />
                <vers num="8.4.6.7" />
                <vers num="8.4.6.8" />
                <vers num="9.1.0" />
                <vers num="9.1.1" />
                <vers num="9.1.10" />
                <vers num="9.1.11" />
                <vers num="9.1.12" />
                <vers num="9.1.13" />
                <vers num="9.1.14" />
                <vers num="9.1.15" />
                <vers num="9.1.16" />
                <vers num="9.1.17" prev="1" />
                <vers num="9.1.2" />
                <vers num="9.1.4" />
                <vers num="9.1.5" />
                <vers num="9.1.6" />
                <vers num="9.1.7" />
                <vers num="9.1.8" />
                <vers num="9.1.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2009-0304" seq="2009-0304" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="7.8" modified="2009-01-31">
        <desc>
            <descript source="cve">The kernel in Sun Solaris 10 and 11 snv_101b, and OpenSolaris before snv_108, allows remote attackers to cause a denial of service (system crash) via a crafted IPv6 packet, related to an "insufficient validation security vulnerability," as demonstrated by SunOSipv6.c.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48208">sun-solaris-ipv6packets-dos(48208)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33435">33435</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7865">7865</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0232" adv="1">ADV-2009-0232</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-251006-1" adv="1">251006</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1021635">1021635</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33605" adv="1">33605</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2009-January/067709.html">20090126 Solaris Devs Are Smoking Pot</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_01" />
                <vers edition=":sparc" num="snv_01" />
                <vers edition=":x86" num="snv_01" />
                <vers edition="" num="snv_02" />
                <vers edition=":x86" num="snv_02" />
                <vers edition=":sparc" num="snv_02" />
                <vers edition="" num="snv_03" />
                <vers edition=":sparc" num="snv_03" />
                <vers edition=":x86" num="snv_03" />
                <vers edition="" num="snv_04" />
                <vers edition=":sparc" num="snv_04" />
                <vers edition=":x86" num="snv_04" />
                <vers edition="" num="snv_05" />
                <vers edition=":sparc" num="snv_05" />
                <vers edition=":x86" num="snv_05" />
                <vers edition="" num="snv_06" />
                <vers edition=":x86" num="snv_06" />
                <vers edition=":sparc" num="snv_06" />
                <vers edition="" num="snv_07" />
                <vers edition=":sparc" num="snv_07" />
                <vers edition=":x86" num="snv_07" />
                <vers edition="" num="snv_08" />
                <vers edition=":sparc" num="snv_08" />
                <vers edition=":x86" num="snv_08" />
                <vers edition="" num="snv_09" />
                <vers edition=":sparc" num="snv_09" />
                <vers edition=":x86" num="snv_09" />
                <vers edition="" num="snv_10" />
                <vers edition=":x86" num="snv_10" />
                <vers edition=":sparc" num="snv_10" />
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers num="snv_101b" />
                <vers edition="" num="snv_102" />
                <vers edition=":sparc" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":sparc" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":sparc" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition=":sparc" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition=":sparc" num="snv_106" />
                <vers edition="" num="snv_107" prev="1" />
                <vers edition=":x86" num="snv_107" prev="1" />
                <vers edition=":sparc" num="snv_107" prev="1" />
                <vers edition="" num="snv_11" />
                <vers edition=":sparc" num="snv_11" />
                <vers edition=":x86" num="snv_11" />
                <vers edition="" num="snv_12" />
                <vers edition=":x86" num="snv_12" />
                <vers edition=":sparc" num="snv_12" />
                <vers edition="" num="snv_13" />
                <vers edition=":sparc" num="snv_13" />
                <vers edition=":x86" num="snv_13" />
                <vers edition="" num="snv_14" />
                <vers edition=":x86" num="snv_14" />
                <vers edition=":sparc" num="snv_14" />
                <vers edition="" num="snv_15" />
                <vers edition=":x86" num="snv_15" />
                <vers edition=":sparc" num="snv_15" />
                <vers edition="" num="snv_16" />
                <vers edition=":sparc" num="snv_16" />
                <vers edition=":x86" num="snv_16" />
                <vers edition="" num="snv_17" />
                <vers edition=":sparc" num="snv_17" />
                <vers edition=":x86" num="snv_17" />
                <vers edition="" num="snv_18" />
                <vers edition=":x86" num="snv_18" />
                <vers edition=":sparc" num="snv_18" />
                <vers edition="" num="snv_19" />
                <vers edition=":x86" num="snv_19" />
                <vers edition=":sparc" num="snv_19" />
                <vers edition="" num="snv_20" />
                <vers edition=":x86" num="snv_20" />
                <vers edition=":sparc" num="snv_20" />
                <vers edition="" num="snv_21" />
                <vers edition=":x86" num="snv_21" />
                <vers edition=":sparc" num="snv_21" />
                <vers edition="" num="snv_22" />
                <vers edition=":sparc" num="snv_22" />
                <vers edition=":x86" num="snv_22" />
                <vers edition="" num="snv_23" />
                <vers edition=":sparc" num="snv_23" />
                <vers edition=":x86" num="snv_23" />
                <vers edition="" num="snv_24" />
                <vers edition=":sparc" num="snv_24" />
                <vers edition=":x86" num="snv_24" />
                <vers edition="" num="snv_25" />
                <vers edition=":sparc" num="snv_25" />
                <vers edition=":x86" num="snv_25" />
                <vers edition="" num="snv_26" />
                <vers edition=":x86" num="snv_26" />
                <vers edition=":sparc" num="snv_26" />
                <vers edition="" num="snv_27" />
                <vers edition=":x86" num="snv_27" />
                <vers edition=":sparc" num="snv_27" />
                <vers edition="" num="snv_28" />
                <vers edition=":sparc" num="snv_28" />
                <vers edition=":x86" num="snv_28" />
                <vers edition="" num="snv_29" />
                <vers edition=":sparc" num="snv_29" />
                <vers edition=":x86" num="snv_29" />
                <vers edition="" num="snv_30" />
                <vers edition=":x86" num="snv_30" />
                <vers edition=":sparc" num="snv_30" />
                <vers edition="" num="snv_31" />
                <vers edition=":sparc" num="snv_31" />
                <vers edition=":x86" num="snv_31" />
                <vers edition="" num="snv_32" />
                <vers edition=":sparc" num="snv_32" />
                <vers edition=":x86" num="snv_32" />
                <vers edition="" num="snv_33" />
                <vers edition=":sparc" num="snv_33" />
                <vers edition=":x86" num="snv_33" />
                <vers edition="" num="snv_34" />
                <vers edition=":sparc" num="snv_34" />
                <vers edition=":x86" num="snv_34" />
                <vers edition="" num="snv_35" />
                <vers edition=":sparc" num="snv_35" />
                <vers edition=":x86" num="snv_35" />
                <vers edition="" num="snv_36" />
                <vers edition=":sparc" num="snv_36" />
                <vers edition=":x86" num="snv_36" />
                <vers edition="" num="snv_37" />
                <vers edition=":x86" num="snv_37" />
                <vers edition=":sparc" num="snv_37" />
                <vers edition="" num="snv_38" />
                <vers edition=":x86" num="snv_38" />
                <vers edition=":sparc" num="snv_38" />
                <vers edition="" num="snv_39" />
                <vers edition=":sparc" num="snv_39" />
                <vers edition=":x86" num="snv_39" />
                <vers edition="" num="snv_40" />
                <vers edition=":x86" num="snv_40" />
                <vers edition=":sparc" num="snv_40" />
                <vers edition="" num="snv_41" />
                <vers edition=":sparc" num="snv_41" />
                <vers edition=":x86" num="snv_41" />
                <vers edition="" num="snv_42" />
                <vers edition=":sparc" num="snv_42" />
                <vers edition=":x86" num="snv_42" />
                <vers edition="" num="snv_43" />
                <vers edition=":sparc" num="snv_43" />
                <vers edition=":x86" num="snv_43" />
                <vers edition="" num="snv_44" />
                <vers edition=":sparc" num="snv_44" />
                <vers edition=":x86" num="snv_44" />
                <vers edition="" num="snv_45" />
                <vers edition=":sparc" num="snv_45" />
                <vers edition=":x86" num="snv_45" />
                <vers edition="" num="snv_46" />
                <vers edition=":x86" num="snv_46" />
                <vers edition=":sparc" num="snv_46" />
                <vers edition="" num="snv_47" />
                <vers edition=":sparc" num="snv_47" />
                <vers edition=":x86" num="snv_47" />
                <vers edition="" num="snv_48" />
                <vers edition=":sparc" num="snv_48" />
                <vers edition=":x86" num="snv_48" />
                <vers edition="" num="snv_49" />
                <vers edition=":sparc" num="snv_49" />
                <vers edition=":x86" num="snv_49" />
                <vers edition="" num="snv_50" />
                <vers edition=":sparc" num="snv_50" />
                <vers edition=":x86" num="snv_50" />
                <vers edition="" num="snv_51" />
                <vers edition=":sparc" num="snv_51" />
                <vers edition=":x86" num="snv_51" />
                <vers edition="" num="snv_52" />
                <vers edition=":sparc" num="snv_52" />
                <vers edition=":x86" num="snv_52" />
                <vers edition="" num="snv_53" />
                <vers edition=":sparc" num="snv_53" />
                <vers edition=":x86" num="snv_53" />
                <vers edition="" num="snv_54" />
                <vers edition=":x86" num="snv_54" />
                <vers edition=":sparc" num="snv_54" />
                <vers edition="" num="snv_55" />
                <vers edition=":sparc" num="snv_55" />
                <vers edition=":x86" num="snv_55" />
                <vers edition="" num="snv_56" />
                <vers edition=":x86" num="snv_56" />
                <vers edition=":sparc" num="snv_56" />
                <vers edition="" num="snv_57" />
                <vers edition=":sparc" num="snv_57" />
                <vers edition=":x86" num="snv_57" />
                <vers edition="" num="snv_58" />
                <vers edition=":x86" num="snv_58" />
                <vers edition=":sparc" num="snv_58" />
                <vers edition="" num="snv_59" />
                <vers edition=":sparc" num="snv_59" />
                <vers edition=":x86" num="snv_59" />
                <vers edition="" num="snv_60" />
                <vers edition=":x86" num="snv_60" />
                <vers edition=":sparc" num="snv_60" />
                <vers edition="" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0311" seq="2009-0311" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="10.0" modified="2009-01-28">
        <desc>
            <descript source="cve">The Backbone service (ftbackbone.exe) in EMC AutoStart before 5.3 SP2 allows remote attackers to execute arbitrary code via a packet with a crafted value that is dereferenced as a function pointer.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://zerodayinitiative.com/advisories/ZDI-09-009/">http://zerodayinitiative.com/advisories/ZDI-09-009/</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48197">autostart-backbone-code-execution(48197)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021636">1021636</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33415">33415</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500350/100/0/threaded">20090123 ZDI-09-009: EMC AutoStart Backbone Engine Trusted Pointer Code Execution Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33667" adv="1">33667</ref>
            <ref source="OSVDB" url="http://osvdb.org/51566">51566</ref>
        </refs>
        <vuln_soft>
            <prod vendor="emc" name="autostart">
                <vers edition="sp1" num="5.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0042" seq="2009-0042" severity="High" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-05">
        <desc>
            <descript source="cve">Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA products allow remote attackers to bypass virus detection via a malformed archive file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48261">ca-antivirus-engine-security-bypass(48261)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021639">1021639</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33464">33464</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500417/100/0/threaded">20090127 CA20090126-01: CA Anti-Virus Engine Detection Evasion Multiple Vulnerabilities</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0270">ADV-2009-0270</ref>
            <ref source="CONFIRM" url="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197601">http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197601</ref>
            <ref source="CONFIRM" url="http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/26/ca20090126-01-ca-anti-virus-engine-detection-evasion-multiple-vulnerabilities.aspx" adv="1">http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/26/ca20090126-01-ca-anti-virus-engine-detection-evasion-multiple-vulnerabilities.aspx</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ca" name="anti-spyware">
                <vers num="2007" />
                <vers num="2008" />
            </prod>
            <prod vendor="ca" name="anti-spyware_for_the_enterprise">
                <vers num="8.1" />
                <vers num="r8" />
            </prod>
            <prod vendor="ca" name="anti-virus">
                <vers edition="8" num="2007" />
                <vers num="2008" />
            </prod>
            <prod vendor="ca" name="anti-virus_for_the_enterprise">
                <vers num="7.1" />
                <vers num="8.1" />
                <vers num="r8" />
            </prod>
            <prod vendor="ca" name="anti-virus_sdk">
                <vers num="" />
            </prod>
            <prod vendor="ca" name="antivirus_gateway">
                <vers num="7.1" />
            </prod>
            <prod vendor="ca" name="arcserve_backup">
                <vers edition="_nil_" num="r11.1" />
                <vers edition="_nil_:linux" num="r11.1" />
                <vers edition="_nil_:windows" num="r11.1" />
                <vers edition="linux" num="r11.5_nil_" />
                <vers edition="windows" num="r11.5_nil_" />
                <vers edition="windows" num="r12.0_nil_" />
            </prod>
            <prod vendor="ca" name="arcserve_client_agent">
                <vers edition="_nil_" num="_nil_" />
                <vers edition="_nil_:windows" num="_nil_" />
            </prod>
            <prod vendor="ca" name="common_services">
                <vers num="11" />
                <vers num="11.1" />
            </prod>
            <prod vendor="ca" name="etrust_ez_antivirus">
                <vers num="r6.1" />
                <vers num="r7" />
            </prod>
            <prod vendor="ca" name="etrust_intrusion_detection">
                <vers edition="sp1" num="2.0" />
                <vers edition="sp1" num="3.0" />
                <vers num="4.0" />
            </prod>
            <prod vendor="ca" name="internet_security_suite_2007">
                <vers num="3" />
            </prod>
            <prod vendor="ca" name="internet_security_suite_2008">
                <vers num="" />
            </prod>
            <prod vendor="ca" name="internet_security_suite_plus_2008">
                <vers num="" />
            </prod>
            <prod vendor="ca" name="network_and_systems_management">
                <vers num="r11" />
                <vers num="r11.1" />
                <vers num="r3.0" />
                <vers num="r3.1" />
            </prod>
            <prod vendor="ca" name="protection_suites">
                <vers num="r2" />
                <vers num="r3" />
                <vers num="r3.1" />
            </prod>
            <prod vendor="ca" name="secure_content_manager">
                <vers num="8.0" />
                <vers num="8.1" />
            </prod>
            <prod vendor="ca" name="threat_manager_for_the_enterprise">
                <vers num="8.1" />
                <vers num="r8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0312" seq="2009-0312" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="4.3" modified="2009-02-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in the antispam feature (security/antispam.py) in MoinMoin 1.7 and 1.8.1 allows remote attackers to inject arbitrary web script or HTML via crafted, disallowed content.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48306">moinmoin-antispam-xss(48306)</ref>
            <ref source="UBUNTU" url="http://www.ubuntulinux.org/support/documentation/usn/usn-716-1">USN-716-1</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/27/4">[oss-security] 20090127 CVE Request: MoinMoin</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33755">33755</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33716">33716</ref>
            <ref source="OSVDB" url="http://osvdb.org/51632">51632</ref>
            <ref source="CONFIRM" url="http://moinmo.in/SecurityFixes#moin1.8.1" adv="1">http://moinmo.in/SecurityFixes#moin1.8.1</ref>
            <ref source="DEBIAN" url="http://lists.debian.org/debian-security-announce/2009/msg00023.html">DSA-1715</ref>
            <ref source="CONFIRM" url="http://hg.moinmo.in/moin/1.8/rev/89b91bf87dad">http://hg.moinmo.in/moin/1.8/rev/89b91bf87dad</ref>
            <ref source="CONFIRM" url="http://hg.moinmo.in/moin/1.7/rev/89b91bf87dad">http://hg.moinmo.in/moin/1.7/rev/89b91bf87dad</ref>
        </refs>
        <vuln_soft>
            <prod vendor="moinmoin" name="moinmoin">
                <vers num="1.7.0" />
                <vers num="1.8.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0313" seq="2009-0313" severity="Medium" type="CVE" published="2009-01-27" CVSS_version="2.0" CVSS_score="6.9" modified="2009-02-20">
        <desc>
            <descript source="cve">winetricks before 20081223 allows local users to overwrite arbitrary files via a symlink attack on the x_showmenu.txt temporary file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48320">winetricks-xshowmenu-symlink(48320)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33474">33474</ref>
            <ref source="OSVDB" url="http://osvdb.org/51619">51619</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.html">SUSE-SR:2009:004</ref>
            <ref source="CONFIRM" url="http://code.google.com/p/winezeug/source/detail?r=253">http://code.google.com/p/winezeug/source/detail?r=253</ref>
        </refs>
        <vuln_soft>
            <prod vendor="kegel" name="winetricks">
                <vers num="20081127" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0314" seq="2009-0314" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="6.9" modified="2009-04-02">
        <desc>
            <descript source="cve">Untrusted search path vulnerability in the Python module in gedit allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-January/msg01195.html">FEDORA-2009-1189</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=481556">https://bugzilla.redhat.com/show_bug.cgi?id=481556</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48271">gedit-pysyssetargv-privilege-escalation(48271)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33445">33445</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/26/2">[oss-security] 20090126 CVE request -- Python &lt; 2.6 PySys_SetArgv issues (epiphany, csound, dia, eog, gedit, xchat, vim, nautilus-python, Gnumeric)</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200903-41.xml">GLSA-200903-41</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34522">34522</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33769">33769</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33759">33759</ref>
            <ref source="MISC" url="http://bugzilla.gnome.org/show_bug.cgi?id=569214">http://bugzilla.gnome.org/show_bug.cgi?id=569214</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gnome" name="gedit">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0315" seq="2009-0315" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="6.9" modified="2009-03-06">
        <desc>
            <descript source="cve">Untrusted search path vulnerability in the Python module in xchat allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=481560">https://bugzilla.redhat.com/show_bug.cgi?id=481560</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33444">33444</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/26/2">[oss-security] 20090126 CVE request -- Python &lt; 2.6 PySys_SetArgv issues (epiphany, csound, dia, eog, gedit, xchat, vim, nautilus-python, Gnumeric)</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:059">MDVSA-2009:059</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xchat" name="xchat">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0316" seq="2009-0316" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="6.9" modified="2009-03-31">
        <desc>
            <descript source="cve">Untrusted search path vulnerability in src/if_python.c in the Python interface in Vim before 7.2.045 allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983), as demonstrated by an erroneous search path for plugin/bike.vim in bicyclerepair.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://svn.pardus.org.tr/pardus/2008/applications/editors/vim/files/official/7.2.045">https://svn.pardus.org.tr/pardus/2008/applications/editors/vim/files/official/7.2.045</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=481565">https://bugzilla.redhat.com/show_bug.cgi?id=481565</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48275">vim-pysyssetargv-privilege-escalation(48275)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33447">33447</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/26/2">[oss-security] 20090126 CVE request -- Python &lt; 2.6 PySys_SetArgv issues (epiphany, csound, dia, eog, gedit, xchat, vim, nautilus-python, Gnumeric)</ref>
            <ref source="MLIST" url="http://www.nabble.com/Bug-484305%3A-bicyclerepair%3A-bike.vim-imports-untrusted-python-files-from-cwd-td18848099.html">[debian-bugs-rc] 20080805 Bug#484305: bicyclerepair: bike.vim imports untrusted python files from cwd</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:047">MDVSA-2009:047</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=493937">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=493937</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=484305">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=484305</ref>
        </refs>
        <vuln_soft>
            <prod vendor="vim" name="vim">
                <vers num="1.0" />
                <vers num="1.22" />
                <vers num="3.0" />
                <vers num="4.0" />
                <vers num="5.0" />
                <vers num="5.1" />
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="5.4" />
                <vers num="5.5" />
                <vers num="5.6" />
                <vers num="5.7" />
                <vers num="5.8" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.2" />
                <vers num="6.3" />
                <vers num="6.4" />
                <vers num="7.0" />
                <vers num="7.1" />
                <vers num="7.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0317" seq="2009-0317" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="6.9" modified="2009-02-05">
        <desc>
            <descript source="cve">Untrusted search path vulnerability in the Python language bindings for Nautilus (nautilus-python) allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=481570">https://bugzilla.redhat.com/show_bug.cgi?id=481570</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33442">33442</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/26/2">[oss-security] 20090126 CVE request -- Python &lt; 2.6 PySys_SetArgv issues (epiphany, csound, dia, eog, gedit, xchat, vim, nautilus-python, Gnumeric)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gnome" name="nautilus-python">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0318" seq="2009-0318" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="6.9" modified="2009-04-16">
        <desc>
            <descript source="cve">Untrusted search path vulnerability in the GObject Python interpreter wrapper in Gnumeric allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-February/msg00211.html">FEDORA-2009-1295</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=481572">https://bugzilla.redhat.com/show_bug.cgi?id=481572</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33438">33438</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2009/01/26/2">[oss-security] 20090126 CVE request -- Python &lt; 2.6 PySys_SetArgv issues (epiphany, csound, dia, eog, gedit, xchat, vim, nautilus-python, Gnumeric)</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2009:043">MDVSA-2009:043</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200904-03.xml">GLSA-200904-03</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33823">33823</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33707">33707</ref>
            <ref source="CONFIRM" url="http://bugzilla.gnome.org/show_bug.cgi?id=569648">http://bugzilla.gnome.org/show_bug.cgi?id=569648</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gnome" name="gnumeric">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2009-0319" seq="2009-0319" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="6.9" modified="2009-03-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in the autofs module in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_108, allows local users to cause a denial of service (autofs mount outage) or possibly gain privileges via vectors related to "xdr processing problems."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-249966-1" adv="1">249966</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-128624-09-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-128624-09-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48234">solaris-autofs-code-execution(48234)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1021644">1021644</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33459">33459</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0363">ADV-2009-0363</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0256" adv="1">ADV-2009-0256</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-041.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-041.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33665">33665</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5977">oval:org.mitre.oval:def:5977</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_01" />
                <vers edition=":sparc" num="snv_01" />
                <vers edition=":x86" num="snv_01" />
                <vers edition="" num="snv_02" />
                <vers edition=":x86" num="snv_02" />
                <vers edition=":sparc" num="snv_02" />
                <vers edition="" num="snv_03" />
                <vers edition=":sparc" num="snv_03" />
                <vers edition=":x86" num="snv_03" />
                <vers edition="" num="snv_04" />
                <vers edition=":sparc" num="snv_04" />
                <vers edition=":x86" num="snv_04" />
                <vers edition="" num="snv_05" />
                <vers edition=":sparc" num="snv_05" />
                <vers edition=":x86" num="snv_05" />
                <vers edition="" num="snv_06" />
                <vers edition=":x86" num="snv_06" />
                <vers edition=":sparc" num="snv_06" />
                <vers edition="" num="snv_07" />
                <vers edition=":sparc" num="snv_07" />
                <vers edition=":x86" num="snv_07" />
                <vers edition="" num="snv_08" />
                <vers edition=":sparc" num="snv_08" />
                <vers edition=":x86" num="snv_08" />
                <vers edition="" num="snv_09" />
                <vers edition=":sparc" num="snv_09" />
                <vers edition=":x86" num="snv_09" />
                <vers edition="" num="snv_10" />
                <vers edition=":x86" num="snv_10" />
                <vers edition=":sparc" num="snv_10" />
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":sparc" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":sparc" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":sparc" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition=":sparc" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition=":sparc" num="snv_106" />
                <vers edition="" num="snv_107" prev="1" />
                <vers edition=":x86" num="snv_107" prev="1" />
                <vers edition=":sparc" num="snv_107" prev="1" />
                <vers edition="" num="snv_11" />
                <vers edition=":sparc" num="snv_11" />
                <vers edition="" num="snv_12" />
                <vers edition=":sparc" num="snv_12" />
                <vers edition="" num="snv_13" />
                <vers edition=":sparc" num="snv_13" />
                <vers edition="" num="snv_14" />
                <vers edition=":sparc" num="snv_14" />
                <vers edition="" num="snv_15" />
                <vers edition=":sparc" num="snv_15" />
                <vers edition="" num="snv_16" />
                <vers edition=":sparc" num="snv_16" />
                <vers edition="" num="snv_17" />
                <vers edition=":sparc" num="snv_17" />
                <vers edition="" num="snv_18" />
                <vers edition=":sparc" num="snv_18" />
                <vers edition="" num="snv_19" />
                <vers edition=":sparc" num="snv_19" />
                <vers edition="" num="snv_20" />
                <vers edition=":sparc" num="snv_20" />
                <vers edition="" num="snv_21" />
                <vers edition=":x86" num="snv_21" />
                <vers edition=":sparc" num="snv_21" />
                <vers edition="" num="snv_22" />
                <vers edition=":sparc" num="snv_22" />
                <vers edition=":x86" num="snv_22" />
                <vers edition="" num="snv_23" />
                <vers edition=":sparc" num="snv_23" />
                <vers edition=":x86" num="snv_23" />
                <vers edition="" num="snv_24" />
                <vers edition=":sparc" num="snv_24" />
                <vers edition=":x86" num="snv_24" />
                <vers edition="" num="snv_25" />
                <vers edition=":sparc" num="snv_25" />
                <vers edition=":x86" num="snv_25" />
                <vers edition="" num="snv_26" />
                <vers edition=":x86" num="snv_26" />
                <vers edition=":sparc" num="snv_26" />
                <vers edition="" num="snv_27" />
                <vers edition=":x86" num="snv_27" />
                <vers edition=":sparc" num="snv_27" />
                <vers edition="" num="snv_28" />
                <vers edition=":sparc" num="snv_28" />
                <vers edition=":x86" num="snv_28" />
                <vers edition="" num="snv_29" />
                <vers edition=":sparc" num="snv_29" />
                <vers edition=":x86" num="snv_29" />
                <vers edition="" num="snv_30" />
                <vers edition=":x86" num="snv_30" />
                <vers edition=":sparc" num="snv_30" />
                <vers edition="" num="snv_31" />
                <vers edition=":sparc" num="snv_31" />
                <vers edition=":x86" num="snv_31" />
                <vers edition="" num="snv_32" />
                <vers edition=":sparc" num="snv_32" />
                <vers edition=":x86" num="snv_32" />
                <vers edition="" num="snv_33" />
                <vers edition=":sparc" num="snv_33" />
                <vers edition=":x86" num="snv_33" />
                <vers edition="" num="snv_34" />
                <vers edition=":sparc" num="snv_34" />
                <vers edition=":x86" num="snv_34" />
                <vers edition="" num="snv_35" />
                <vers edition=":sparc" num="snv_35" />
                <vers edition=":x86" num="snv_35" />
                <vers edition="" num="snv_36" />
                <vers edition=":sparc" num="snv_36" />
                <vers edition=":x86" num="snv_36" />
                <vers edition="" num="snv_37" />
                <vers edition=":x86" num="snv_37" />
                <vers edition=":sparc" num="snv_37" />
                <vers edition="" num="snv_38" />
                <vers edition=":x86" num="snv_38" />
                <vers edition=":sparc" num="snv_38" />
                <vers edition="" num="snv_39" />
                <vers edition=":sparc" num="snv_39" />
                <vers edition=":x86" num="snv_39" />
                <vers edition="" num="snv_40" />
                <vers edition=":x86" num="snv_40" />
                <vers edition=":sparc" num="snv_40" />
                <vers edition="" num="snv_41" />
                <vers edition=":sparc" num="snv_41" />
                <vers edition=":x86" num="snv_41" />
                <vers edition="" num="snv_42" />
                <vers edition=":sparc" num="snv_42" />
                <vers edition=":x86" num="snv_42" />
                <vers edition="" num="snv_43" />
                <vers edition=":sparc" num="snv_43" />
                <vers edition=":x86" num="snv_43" />
                <vers edition="" num="snv_44" />
                <vers edition=":sparc" num="snv_44" />
                <vers edition=":x86" num="snv_44" />
                <vers edition="" num="snv_45" />
                <vers edition=":sparc" num="snv_45" />
                <vers edition=":x86" num="snv_45" />
                <vers edition="" num="snv_46" />
                <vers edition=":x86" num="snv_46" />
                <vers edition=":sparc" num="snv_46" />
                <vers edition="" num="snv_47" />
                <vers edition=":sparc" num="snv_47" />
                <vers edition=":x86" num="snv_47" />
                <vers edition="" num="snv_48" />
                <vers edition=":sparc" num="snv_48" />
                <vers edition=":x86" num="snv_48" />
                <vers edition="" num="snv_49" />
                <vers edition=":sparc" num="snv_49" />
                <vers edition=":x86" num="snv_49" />
                <vers edition="" num="snv_50" />
                <vers edition=":sparc" num="snv_50" />
                <vers edition=":x86" num="snv_50" />
                <vers edition="" num="snv_51" />
                <vers edition=":sparc" num="snv_51" />
                <vers edition=":x86" num="snv_51" />
                <vers edition="" num="snv_52" />
                <vers edition=":sparc" num="snv_52" />
                <vers edition=":x86" num="snv_52" />
                <vers edition="" num="snv_53" />
                <vers edition=":sparc" num="snv_53" />
                <vers edition=":x86" num="snv_53" />
                <vers edition="" num="snv_54" />
                <vers edition=":x86" num="snv_54" />
                <vers edition=":sparc" num="snv_54" />
                <vers edition="" num="snv_55" />
                <vers edition=":sparc" num="snv_55" />
                <vers edition=":x86" num="snv_55" />
                <vers edition="" num="snv_56" />
                <vers edition=":x86" num="snv_56" />
                <vers edition=":sparc" num="snv_56" />
                <vers edition="" num="snv_57" />
                <vers edition=":sparc" num="snv_57" />
                <vers edition=":x86" num="snv_57" />
                <vers edition="" num="snv_58" />
                <vers edition=":x86" num="snv_58" />
                <vers edition=":sparc" num="snv_58" />
                <vers edition="" num="snv_59" />
                <vers edition=":sparc" num="snv_59" />
                <vers edition=":x86" num="snv_59" />
                <vers edition="" num="snv_60" />
                <vers edition=":x86" num="snv_60" />
                <vers edition=":sparc" num="snv_60" />
                <vers edition="" num="snv_61" />
                <vers edition=":sparc" num="snv_61" />
                <vers edition=":x86" num="snv_61" />
                <vers edition="" num="snv_62" />
                <vers edition=":x86" num="snv_62" />
                <vers edition=":sparc" num="snv_62" />
                <vers edition="" num="snv_63" />
                <vers edition=":sparc" num="snv_63" />
                <vers edition=":x86" num="snv_63" />
                <vers edition="" num="snv_64" />
                <vers edition=":x86" num="snv_64" />
                <vers edition=":sparc" num="snv_64" />
                <vers edition="" num="snv_65" />
                <vers edition=":sparc" num="snv_65" />
                <vers edition=":x86" num="snv_65" />
                <vers edition="" num="snv_66" />
                <vers edition=":x86" num="snv_66" />
                <vers edition=":sparc" num="snv_66" />
                <vers edition="" num="snv_67" />
                <vers edition=":sparc" num="snv_67" />
                <vers edition=":x86" num="snv_67" />
                <vers edition="" num="snv_68" />
                <vers edition=":sparc" num="snv_68" />
                <vers edition=":x86" num="snv_68" />
                <vers edition="" num="snv_69" />
                <vers edition=":sparc" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":sparc" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition=":sparc" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":sparc" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition=":sparc" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition=":sparc" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition=":sparc" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":sparc" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10" />
                <vers edition=":x86" num="10" />
                <vers edition=":sparc" num="10" />
                <vers edition="" num="8" />
                <vers edition=":sparc" num="8" />
                <vers edition=":x86" num="8" />
                <vers edition="" num="9" />
                <vers edition=":sparc" num="9" />
                <vers edition=":x86" num="9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:H/Au:N/C:C/I:N/A:N)" CVSS_base_score="4.0" CVSS_exploit_subscore="1.9" CVSS_impact_subscore="6.9" name="CVE-2009-0320" seq="2009-0320" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="4.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Microsoft Windows XP, Server 2003 and 2008, and Vista exposes I/O activity measurements of all processes, which allows local users to obtain sensitive information, as demonstrated by reading the I/O Other Bytes column in Task Manager (aka taskmgr.exe) to estimate the number of characters that a different user entered at a runas.exe password prompt, related to a "benchmarking attack."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33440">33440</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500393/100/0/threaded">20090124 Benchmarking attacks and major security weakness on all recent Windows versions up to Windows 200</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="windows_server_2003">
                <vers num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2008">
                <vers num="" />
            </prod>
            <prod vendor="microsoft" name="windows_vista">
                <vers num="" />
            </prod>
            <prod vendor="microsoft" name="windows_xp">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0321" seq="2009-0321" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="4.3" modified="2009-03-04">
        <desc>
            <descript source="cve">Apple Safari 3.2.1 (aka AppVer 3.525.27.1) on Windows allows remote attackers to cause a denial of service (infinite loop or access violation) via a link to an http URI in which the authority (aka hostname) portion is either a (1) . (dot) or (2) .. (dot dot) sequence.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48284">safari-httpuri-dos(48284)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33481">33481</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6091">oval:org.mitre.oval:def:6091</ref>
            <ref source="MISC" url="http://lostmon.blogspot.com/2009/01/safari-for-windows-321-remote-http-uri.html">http://lostmon.blogspot.com/2009/01/safari-for-windows-321-remote-http-uri.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="safari">
                <vers num="3.2.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2009-0322" seq="2009-0322" severity="Medium" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="4.9" modified="2009-06-12">
        <desc>
            <descript source="cve">drivers/firmware/dell_rbu.c in the Linux kernel before 2.6.27.13, and 2.6.28.x before 2.6.28.2, allows local users to cause a denial of service (system crash) via a read system call that specifies zero bytes from the (1) image_type or (2) packet_size file in /sys/devices/platform/dell_rbu/.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/33428">33428</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-751-1">USN-751-1</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0360.html">RHSA-2009:0360</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0331.html">RHSA-2009:0331</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2009-0326.html">RHSA-2009:0326</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1794">DSA-1794</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1787">DSA-1787</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2009/dsa-1749">DSA-1749</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2009-114.htm">http://support.avaya.com/elmodocs2/security/ASA-2009-114.htm</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35394">35394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35390">35390</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35011">35011</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34981">34981</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34762">34762</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34680">34680</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34502">34502</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34394">34394</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/34252">34252</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33758">33758</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33656" adv="1">33656</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00001.html">SUSE-SA:2009:031</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00000.html">SUSE-SA:2009:030</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00003.html">SUSE-SA:2009:010</ref>
            <ref source="CONFIRM" url="http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.2">http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.2</ref>
            <ref source="CONFIRM" url="http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.27.13">http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.27.13</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=81156928f8fe31621e467490b9d441c0285998c3">http://git.kernel.org/?p=linux/kernel/git/stable/linux-2.6.27.y.git;a=commit;h=81156928f8fe31621e467490b9d441c0285998c3</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.6" />
                <vers num="2.6.0" />
                <vers num="2.6.1" />
                <vers num="2.6.10" />
                <vers num="2.6.11" />
                <vers num="2.6.11.1" />
                <vers num="2.6.11.10" />
                <vers num="2.6.11.11" />
                <vers num="2.6.11.12" />
                <vers num="2.6.11.2" />
                <vers num="2.6.11.3" />
                <vers num="2.6.11.4" />
                <vers num="2.6.11.5" />
                <vers num="2.6.11.6" />
                <vers num="2.6.11.7" />
                <vers num="2.6.11.8" />
                <vers num="2.6.11.9" />
                <vers num="2.6.12" />
                <vers num="2.6.12.1" />
                <vers num="2.6.12.2" />
                <vers num="2.6.12.3" />
                <vers num="2.6.12.4" />
                <vers num="2.6.12.5" />
                <vers num="2.6.12.6" />
                <vers num="2.6.13" />
                <vers num="2.6.13.1" />
                <vers num="2.6.13.2" />
                <vers num="2.6.13.3" />
                <vers num="2.6.13.4" />
                <vers num="2.6.13.5" />
                <vers num="2.6.14" />
                <vers num="2.6.14.1" />
                <vers num="2.6.14.2" />
                <vers num="2.6.14.3" />
                <vers num="2.6.14.4" />
                <vers num="2.6.14.5" />
                <vers num="2.6.14.6" />
                <vers num="2.6.14.7" />
                <vers num="2.6.15" />
                <vers num="2.6.15.1" />
                <vers num="2.6.15.2" />
                <vers num="2.6.15.3" />
                <vers num="2.6.15.4" />
                <vers num="2.6.15.5" />
                <vers num="2.6.15.6" />
                <vers num="2.6.15.7" />
                <vers num="2.6.16" />
                <vers num="2.6.16.1" />
                <vers num="2.6.16.10" />
                <vers num="2.6.16.11" />
                <vers num="2.6.16.12" />
                <vers num="2.6.16.13" />
                <vers num="2.6.16.14" />
                <vers num="2.6.16.15" />
                <vers num="2.6.16.16" />
                <vers num="2.6.16.17" />
                <vers num="2.6.16.18" />
                <vers num="2.6.16.19" />
                <vers num="2.6.16.2" />
                <vers num="2.6.16.20" />
                <vers num="2.6.16.21" />
                <vers num="2.6.16.22" />
                <vers num="2.6.16.23" />
                <vers num="2.6.16.24" />
                <vers num="2.6.16.25" />
                <vers num="2.6.16.26" />
                <vers num="2.6.16.27" />
                <vers num="2.6.16.28" />
                <vers num="2.6.16.29" />
                <vers num="2.6.16.3" />
                <vers num="2.6.16.30" />
                <vers num="2.6.16.31" />
                <vers num="2.6.16.32" />
                <vers num="2.6.16.33" />
                <vers num="2.6.16.34" />
                <vers num="2.6.16.35" />
                <vers num="2.6.16.36" />
                <vers num="2.6.16.37" />
                <vers num="2.6.16.38" />
                <vers num="2.6.16.39" />
                <vers num="2.6.16.4" />
                <vers num="2.6.16.40" />
                <vers num="2.6.16.41" />
                <vers num="2.6.16.42" />
                <vers num="2.6.16.43" />
                <vers num="2.6.16.44" />
                <vers num="2.6.16.45" />
                <vers num="2.6.16.46" />
                <vers num="2.6.16.47" />
                <vers num="2.6.16.48" />
                <vers num="2.6.16.49" />
                <vers num="2.6.16.5" />
                <vers num="2.6.16.50" />
                <vers num="2.6.16.51" />
                <vers num="2.6.16.52" />
                <vers num="2.6.16.53" />
                <vers num="2.6.16.54" />
                <vers num="2.6.16.55" />
                <vers num="2.6.16.56" />
                <vers num="2.6.16.57" />
                <vers num="2.6.16.58" />
                <vers num="2.6.16.59" />
                <vers num="2.6.16.6" />
                <vers num="2.6.16.60" />
                <vers num="2.6.16.61" />
                <vers num="2.6.16.62" />
                <vers num="2.6.16.7" />
                <vers num="2.6.16.8" />
                <vers num="2.6.16.9" />
                <vers num="2.6.17" />
                <vers num="2.6.17.1" />
                <vers num="2.6.17.10" />
                <vers num="2.6.17.11" />
                <vers num="2.6.17.12" />
                <vers num="2.6.17.13" />
                <vers num="2.6.17.14" />
                <vers num="2.6.17.2" />
                <vers num="2.6.17.3" />
                <vers num="2.6.17.4" />
                <vers num="2.6.17.5" />
                <vers num="2.6.17.6" />
                <vers num="2.6.17.7" />
                <vers num="2.6.17.8" />
                <vers num="2.6.17.9" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.18.1" />
                <vers num="2.6.18.2" />
                <vers num="2.6.18.3" />
                <vers num="2.6.18.4" />
                <vers num="2.6.18.5" />
                <vers num="2.6.18.6" />
                <vers num="2.6.18.7" />
                <vers num="2.6.18.8" />
                <vers num="2.6.19" />
                <vers num="2.6.19.1" />
                <vers num="2.6.19.2" />
                <vers num="2.6.19.3" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.2" />
                <vers num="2.6.20" />
                <vers num="2.6.20.1" />
                <vers num="2.6.20.10" />
                <vers num="2.6.20.11" />
                <vers num="2.6.20.12" />
                <vers num="2.6.20.13" />
                <vers num="2.6.20.14" />
                <vers num="2.6.20.15" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.2" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.20.3" />
                <vers num="2.6.20.4" />
                <vers num="2.6.20.5" />
                <vers num="2.6.20.6" />
                <vers num="2.6.20.7" />
                <vers num="2.6.20.8" />
                <vers num="2.6.20.9" />
                <vers num="2.6.21" />
                <vers num="2.6.21.1" />
                <vers num="2.6.21.2" />
                <vers num="2.6.21.3" />
                <vers num="2.6.21.4" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.16" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.3" />
                <vers num="2.6.22.4" />
                <vers num="2.6.22.5" />
                <vers num="2.6.22.6" />
                <vers num="2.6.22.7" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers edition="rc1" num="2.6.23" />
                <vers edition="rc2" num="2.6.23" />
                <vers num="2.6.23.1" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.14" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.2" />
                <vers num="2.6.23.3" />
                <vers num="2.6.23.4" />
                <vers num="2.6.23.5" />
                <vers num="2.6.23.6" />
                <vers num="2.6.23.7" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers edition="rc1" num="2.6.24" />
                <vers edition="rc2" num="2.6.24" />
                <vers edition="rc3" num="2.6.24" />
                <vers edition="rc4" num="2.6.24" />
                <vers edition="rc5" num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24.7" />
                <vers num="2.6.25" />
                <vers num="2.6.25.1" />
                <vers num="2.6.25.10" />
                <vers num="2.6.25.11" />
                <vers num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.15" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers num="2.6.25.18" />
                <vers num="2.6.25.19" />
                <vers num="2.6.25.2" />
                <vers num="2.6.25.20" />
                <vers num="2.6.25.3" />
                <vers num="2.6.25.4" />
                <vers num="2.6.25.5" />
                <vers num="2.6.25.6" />
                <vers num="2.6.25.7" />
                <vers num="2.6.25.8" />
                <vers num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.26.6" />
                <vers num="2.6.26.7" />
                <vers num="2.6.26.8" />
                <vers num="2.6.27" />
                <vers num="2.6.27.1" />
                <vers num="2.6.27.10" />
                <vers num="2.6.27.11" />
                <vers num="2.6.27.12" prev="1" />
                <vers num="2.6.27.2" />
                <vers num="2.6.27.3" />
                <vers num="2.6.27.4" />
                <vers num="2.6.27.5" />
                <vers num="2.6.27.6" />
                <vers num="2.6.27.7" />
                <vers num="2.6.27.8" />
                <vers num="2.6.27.9" />
                <vers num="2.6.28" />
                <vers num="2.6.28.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0323" seq="2009-0323" severity="High" type="CVE" published="2009-01-28" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-10">
        <desc>
            <descript source="cve">Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a long type parameter in an input tag, which is not properly handled by the EndOfXmlAttributeValue function; (2) an "HTML GI" in a start tag, which is not properly handled by the ProcessStartGI function; and unspecified vectors in (3) html2thot.c and (4) xml2thot.c, related to the msgBuffer variable.  NOTE: these are different vectors than CVE-2008-6005.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48325">amaya-html-tags-bo(48325)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500492/100/0/threaded">20090128 CORE-2008-1211: Amaya web editor XML and HTML parser vulnerabilities</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7902">7902</ref>
            <ref source="MISC" url="http://www.coresecurity.com/content/amaya-buffer-overflows">http://www.coresecurity.com/content/amaya-buffer-overflows</ref>
        </refs>
        <vuln_soft>
            <prod vendor="w3" name="amaya">
                <vers num="0.9" />
                <vers num="0.95b" />
                <vers num="1.0" />
                <vers num="1.0a" />
                <vers num="1.1" />
                <vers num="1.1a" />
                <vers num="1.1c" />
                <vers num="1.2" />
                <vers num="1.2a" />
                <vers num="1.3" />
                <vers num="1.3a" />
                <vers num="1.3b" />
                <vers num="1.4" />
                <vers num="1.4a" />
                <vers num="10.0" />
                <vers num="11.0" prev="1" />
                <vers num="2.0" />
                <vers num="2.1" />
                <vers num="2.2" />
                <vers num="2.3" />
                <vers num="2.4" />
                <vers num="3.0" />
                <vers num="3.1" />
                <vers num="3.2" />
                <vers num="3.2.1" />
                <vers num="4.0" />
                <vers num="4.1" />
                <vers num="4.2" />
                <vers num="4.2.1" />
                <vers num="4.3" />
                <vers num="4.3.1" />
                <vers num="4.3.2" />
                <vers num="5.0" />
                <vers num="5.1" />
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.2" />
                <vers num="6.3" />
                <vers num="6.4" />
                <vers num="7.0" />
                <vers num="7.1" />
                <vers num="7.2" />
                <vers num="8.0" />
                <vers num="8.1" />
                <vers num="8.1a" />
                <vers num="8.1b" />
                <vers num="8.2" />
                <vers num="8.3" />
                <vers num="8.4" />
                <vers num="8.5" />
                <vers num="8.52" />
                <vers num="8.6" />
                <vers num="8.7" />
                <vers num="8.7.1" />
                <vers num="8.7.2" />
                <vers num="8.8.1" />
                <vers num="8.8.3" />
                <vers num="8.8.4" />
                <vers num="8.8.5" />
                <vers num="9.0" />
                <vers num="9.1" />
                <vers num="9.2.1" />
                <vers num="9.3" />
                <vers num="9.4" />
                <vers num="9.5" />
                <vers num="9.52" />
                <vers num="9.53" />
                <vers num="9.54" />
                <vers num="9.55" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0324" seq="2009-0324" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in BibCiter 1.4 allow remote attackers to execute arbitrary SQL commands via the (1) idp parameter to reports/projects.php, the (2) idc parameter to reports/contacts.php, and the (3) idu parameter to reports/users.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48080">bibciter-projects-sql-injection(48080)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33329">33329</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7814">7814</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33555" adv="1">33555</ref>
            <ref source="CONFIRM" url="http://bibciter.sourceforge.net/?p=35" adv="1">http://bibciter.sourceforge.net/?p=35</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bibciter" name="bibciter">
                <vers num="1.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0325" seq="2009-0325" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Directory traversal vulnerability in entries/index.php in Ninja Blog 4.8, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the cat parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="https://www.push55.co.uk/poclibrary/ninjadesignscouk-1.txt">https://www.push55.co.uk/poclibrary/ninjadesignscouk-1.txt</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33351">33351</ref>
            <ref source="MISC" url="http://www.push55.co.uk/index.php?s=ad&amp;id=6">http://www.push55.co.uk/index.php?s=ad&amp;id=6</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7831">7831</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33573" adv="1">33573</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ninjadesigns" name="ninja_blog">
                <vers num="4.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0326" seq="2009-0326" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in login.php in Dark Age CMS 0.2c beta allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48095">darkagecms-login-sql-injection(48095)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33271">33271</ref>
        </refs>
        <vuln_soft>
            <prod vendor="dark_age_cms" name="dark_age_cms">
                <vers edition="beta" num="0.2c" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0327" seq="2009-0327" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in readbible.php in Free Bible Search PHP Script 1.0 allows remote attackers to execute arbitrary SQL commands via the version parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://www.seraphimtech.net/repository/Changes.txt">http://www.seraphimtech.net/repository/Changes.txt</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33301">33301</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7798">7798</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33595" adv="1">33595</ref>
            <ref source="MISC" url="http://freshmeat.net/projects/freebiblesearch/?branch_id=77256&amp;release_id=292446">http://freshmeat.net/projects/freebiblesearch/?branch_id=77256&amp;release_id=292446</ref>
        </refs>
        <vuln_soft>
            <prod vendor="seraphimtech" name="free_bible_search_php_script">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0328" seq="2009-0328" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-29">
        <desc>
            <descript source="cve">ROBS-PROJECTS Digital Sales IPN (aka DS-IPN.NET or DS-IPN Paypal Shop) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request for Database/Sales.mdb.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48082">digitalsales-sales-information-disclosure(48082)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7816">7816</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33602" adv="1">33602</ref>
        </refs>
        <vuln_soft>
            <prod vendor="robs-projects" name="digital_sales_ipn">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0329" seq="2009-0329" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in the PcCookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php, a different vector than CVE-2008-0844.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48088">pccookbook-recipeid-sql-injection(48088)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33346">33346</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7824">7824</ref>
        </refs>
        <vuln_soft>
            <prod vendor="joomla" name="com_pccookbook">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0330" seq="2009-0330" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-29">
        <desc>
            <descript source="cve">Directory traversal vulnerability in index.php in Simple Content Management System (SCMS) 1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the p parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48081">scms-index-file-include(48081)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33330">33330</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7818">7818</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33608" adv="1">33608</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wss-pro" name="scms">
                <vers num="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2009-0331" seq="2009-0331" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.8" modified="2009-01-30">
        <desc>
            <descript source="cve">Directory traversal vulnerability in gallery/comment.php in Enhanced Simple PHP Gallery (ESPG) 1.72 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.  NOTE: the vulnerability may be in my little homepage Comment script. If so, then this should not be treated as a vulnerability in ESPG.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48087">espg-comment-directory-traversal(48087)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33335">33335</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7819">7819</ref>
        </refs>
        <vuln_soft>
            <prod vendor="quirm" name="espg">
                <vers num="1.72" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0332" seq="2009-0332" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-30">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in AV Book Library before 1.1 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) admin/edit.php, (2) admin/add.php, (3) lib/book_search.php, and possibly other components.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48084">avbook-edit-sql-injection(48084)</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/tracker/index.php?func=detail&amp;aid=2219743&amp;group_id=209711&amp;atid=1010816">http://sourceforge.net/tracker/index.php?func=detail&amp;aid=2219743&amp;group_id=209711&amp;atid=1010816</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/project/shownotes.php?release_id=654214">http://sourceforge.net/project/shownotes.php?release_id=654214</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33583" adv="1">33583</ref>
        </refs>
        <vuln_soft>
            <prod vendor="avbooklibrary" name="avbooklibrary">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0333" seq="2009-0333" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a category action to index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33353">33353</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33577" adv="1">33577</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/7833">7833</ref>
        </refs>
        <vuln_soft>
            <prod vendor="joomla" name="com_waticketsystem">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0334" seq="2009-0334" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-30">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.asp in Katy Whitton BlogIt! allows remote attackers to execute arbitrary SQL commands via the day parameter in an archive action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48074">blogit-index-sql-injection(48074)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33325">33325</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7806">7806</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33572" adv="1">33572</ref>
        </refs>
        <vuln_soft>
            <prod vendor="katywhitton" name="blogit!">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0335" seq="2009-0335" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.asp in Katy Whitton BlogIt! allows remote attackers to inject arbitrary web script or HTML via the view parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48073">blogit-index-xss(48073)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33325">33325</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7806">7806</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33572" adv="1">33572</ref>
        </refs>
        <vuln_soft>
            <prod vendor="katywhitton" name="blogit!">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-0336" seq="2009-0336" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2009-01-29">
        <desc>
            <descript source="cve">Katy Whitton BlogIt! stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request for database/Blog.mdb.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48075">blogit-blog-information-disclosure(48075)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7806">7806</ref>
        </refs>
        <vuln_soft>
            <prod vendor="katywhitton" name="blogit!">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0337" seq="2009-0337" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.asp in Katy Whitton BlogIt! allows remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parameters.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7806">7806</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33572" adv="1">33572</ref>
        </refs>
        <vuln_soft>
            <prod vendor="katywhitton" name="blogit!">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-0338" seq="2009-0338" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="4.3" modified="2009-01-29">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in inc_webblogmanager.asp in DMXReady Blog Manager allows remote attackers to inject arbitrary web script or HTML via the CategoryID parameter in a refer action.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48053">blogmanager-incwebblogmanager-xss(48053)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33314">33314</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500146/100/0/threaded">20090116 DMXReady Blog Manager (SQL/XSS)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33601" adv="1">33601</ref>
            <ref source="MISC" url="http://dmxready.helpserve.com/index.php?_m=news&amp;_a=viewnews&amp;newsid=12" adv="1">http://dmxready.helpserve.com/index.php?_m=news&amp;_a=viewnews&amp;newsid=12</ref>
        </refs>
        <vuln_soft>
            <prod vendor="dmxready" name="blog_manager">
                <vers num="_nil" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-0339" seq="2009-0339" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2009-01-30">
        <desc>
            <descript source="cve">SQL injection vulnerability in inc_webblogmanager.asp in DMXReady Blog Manager allows remote attackers to execute arbitrary SQL commands via the itemID parameter in a view action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48054">blogmanager-incwebblogmanager-sql-injection(48054)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33314">33314</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500146/100/0/threaded">20090116 DMXReady Blog Manager (SQL/XSS)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33601" adv="1">33601</ref>
            <ref source="MISC" url="http://dmxready.helpserve.com/index.php?_m=news&amp;_a=viewnews&amp;newsid=12" adv="1">http://dmxready.helpserve.com/index.php?_m=news&amp;_a=viewnews&amp;newsid=12</ref>
        </refs>
        <vuln_soft>
            <prod vendor="dmxready" name="blog_manager">
                <vers num="_nil_" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-0340" seq="2009-0340" severity="Medium" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="6.8" modified="2009-01-29">
        <desc>
            <descript source="cve">Multiple directory traversal vulnerabilities in Simple PHP Newsletter 1.5 allow remote attackers to read arbitrary files via a .. (dot dot) in the olang parameter to (1) mail.php and (2) mailbar.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/48089">simplephpnewsletter-mail-file-include(48089)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/33327">33327</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/7813">7813</ref>
        </refs>
        <vuln_soft>
            <prod vendor="quirm" name="simple_php_newsletter">
                <vers num="1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-0341" seq="2009-0341" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-20">
        <desc>
            <descript source="cve">The shell32 module in Microsoft Internet Explorer 7.0 on Windows XP SP3 might allow remote attackers to execute arbitrary code via a long VALUE attribute in an INPUT element, possibly related to a stack consumption vulnerability.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33494">33494</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500472/100/0/threaded">20090128 Internet explorer 7.0 stack overflow</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="internet_explorer">
                <vers num="7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2009-0342" seq="2009-0342" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.2" modified="2009-01-30">
        <desc>
            <descript source="cve">Niels Provos Systrace before 1.6f on the x86_64 Linux platform allows local users to bypass intended access restrictions by making a 64-bit syscall with a syscall number that corresponds to a policy-compliant 32-bit syscall.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33417">33417</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500377/100/0/threaded">20090123 Problems with syscall filtering technologies on Linux</ref>
            <ref source="CONFIRM" url="http://www.citi.umich.edu/u/provos/systrace/">http://www.citi.umich.edu/u/provos/systrace/</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/01/bypassing-syscall-filtering.html">http://scarybeastsecurity.blogspot.com/2009/01/bypassing-syscall-filtering.html</ref>
            <ref source="MISC" url="http://scary.beasts.org/security/CESA-2009-001.html">http://scary.beasts.org/security/CESA-2009-001.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="provos" name="systrace">
                <vers num="1.1" />
                <vers num="1.2" />
                <vers num="1.3" />
                <vers num="1.4" />
                <vers num="1.5" />
                <vers num="1.6" />
                <vers num="1.6a" />
                <vers num="1.6b" />
                <vers num="1.6c" />
                <vers num="1.6d" />
                <vers num="1.6e" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2009-0343" seq="2009-0343" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="7.2" modified="2009-01-30">
        <desc>
            <descript source="cve">Niels Provos Systrace 1.6f and earlier on the x86_64 Linux platform allows local users to bypass intended access restrictions by making a 32-bit syscall with a syscall number that corresponds to a policy-compliant 64-bit syscall, related to race conditions that occur in monitoring 64-bit processes.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/33417">33417</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500377/100/0/threaded">20090123 Problems with syscall filtering technologies on Linux</ref>
            <ref source="MISC" url="http://www.citi.umich.edu/u/provos/systrace/">http://www.citi.umich.edu/u/provos/systrace/</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/01/bypassing-syscall-filtering.html">http://scarybeastsecurity.blogspot.com/2009/01/bypassing-syscall-filtering.html</ref>
            <ref source="MISC" url="http://scary.beasts.org/security/CESA-2009-001.html">http://scary.beasts.org/security/CESA-2009-001.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="niels_provos" name="systrace">
                <vers num="1.1" />
                <vers num="1.2" />
                <vers num="1.3" />
                <vers num="1.4" />
                <vers num="1.5" />
                <vers num="1.6" />
                <vers num="1.6a" />
                <vers num="1.6b" />
                <vers num="1.6c" />
                <vers num="1.6d" />
                <vers num="1.6e" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-0344" seq="2009-0344" severity="High" type="CVE" published="2009-01-29" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-20">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Embedded Lights Out Manager (ELOM) on the Sun Fire X2100 M2 and X2200 M2 x86 platforms before SP/BMC firmware 3.20 allows remote atta