NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48143 | CVE-2009-0828 | QuoteBook stores quotes.inc under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information, including user credentials, via a direct request. | 2 | 5 | Medium | 2017-01-07 | 2009-03-21 | View | |
48399 | CVE-2009-1089 | Absolute path traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to read arbitrary files via a base64-encoded absolute path in the filename parameter. | 2 | 5 | Medium | 2017-01-07 | 2012-10-24 | View | |
48655 | CVE-2009-1370 | Stack-based buffer overflow in ape_plugin.plg in Xilisoft Video Converter 3.1.53.0704n and 5.1.23.0402 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .cue file. | 2 | 9.3 | High | 2017-01-07 | 2009-04-23 | View | |
48911 | CVE-2009-1642 | Multiple stack-based buffer overflows in Mini-stream ASX to MP3 Converter 3.0.0.7 allow remote attackers to execute arbitrary code via (1) a long rtsp URL in a .ram file and (2) a long string in the HREF attribute of a REF element in a .asx file. | 2 | 9.3 | High | 2017-01-07 | 2009-05-15 | View | |
49167 | CVE-2009-1902 | The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header name, which triggers a NULL pointer dereference. | 2 | 7.8 | High | 2017-01-07 | 2009-07-15 | View |
Page 1075 of 17672, showing 5 records out of 88360 total, starting on record 5371, ending on 5375