NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50972 | CVE-2009-3804 | Multiple SQL injection vulnerabilities in modules/forum/post.php in RunCMS 2M1 allow remote authenticated users to execute arbitrary SQL commands via (1) the pid parameter, which is not properly handled by the store function in modules/forum/class/class.forumposts.php, or (2) the topic_id parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2009-10-28 | View | |
51228 | CVE-2009-4078 | Multiple cross-site scripting (XSS) vulnerabilities in Redmine 0.8.5 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-11-25 | View | |
51996 | CVE-2009-4879 | The Identity Server in Novell Access Manager before 3.1 SP1 allows attackers with disabled Active Directory accounts to authenticate using X.509 authentication, which bypasses intended access restrictions. | 2 | 4.3 | Medium | 2017-01-07 | 2010-05-27 | View | |
52764 | CVE-2007-0540 | WordPress allows remote attackers to cause a denial of service (bandwidth or thread consumption) via pingback service calls with a source URI that corresponds to a file with a binary content type, which is downloaded even though it cannot contain usable pingback data. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
53020 | CVE-2007-0803 | Multiple buffer overflows in STLport before 5.0.3 allow remote attackers to execute arbitrary code via unspecified vectors relating to (1) "print floats" and (2) a missing null termination in the "rope constructor." | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 1040 of 17672, showing 5 records out of 88360 total, starting on record 5196, ending on 5200