NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51476 | CVE-2009-4353 | The Mobile Edition of TransWARE Active! mail 2003 build 2003.0139.0871 and earlier, and possibly other versions before 2003.0139.0911, does not remove the session ID in a Referer URL, which allows remote attackers to hijack web sessions via vectors such as an email with an embedded URL. | 2 | 5.8 | Medium | 2017-01-07 | 2009-12-21 | View | |
51732 | CVE-2009-4615 | SQL injection vulnerability in review.php in MYRE Holiday Rental Manager allows remote attackers to execute arbitrary SQL commands via the link_id parameter in a show_review action. | 2 | 7.5 | High | 2017-01-07 | 2011-04-29 | View | |
51988 | CVE-2009-4871 | SQL injection vulnerability in globepersonnel_forum.asp in Logoshows BBS 2.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. | 2 | 7.5 | High | 2017-01-07 | 2010-05-11 | View | |
52244 | CVE-2007-0007 | gnucash 2.0.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) gnucash.trace, (2) qof.trace, and (3) qof.trace.[PID] temporary files. | 2 | 3.6 | Low | 2017-01-07 | 2011-03-07 | View | |
52500 | CVE-2007-0272 | Multiple buffer overflows in MDSYS.MD in Oracle Database 8.1.7.4, 9.0.1.5, 9.2.0.7, and 10.1.0.4 allows remote authenticated users to cause a denial of service (crash) or execute arbitrary code via unspecified vectors involving certain public procedures, aka DB05. | 2 | 8.5 | High | 2017-01-07 | 2012-10-22 | View |
Page 1247 of 17672, showing 5 records out of 88360 total, starting on record 6231, ending on 6235