NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51476  CVE-2009-4353  The Mobile Edition of TransWARE Active! mail 2003 build 2003.0139.0871 and earlier, and possibly other versions before 2003.0139.0911, does not remove the session ID in a Referer URL, which allows remote attackers to hijack web sessions via vectors such as an email with an embedded URL.    5.8  Medium  2017-01-07  2009-12-21  View
51732  CVE-2009-4615  SQL injection vulnerability in review.php in MYRE Holiday Rental Manager allows remote attackers to execute arbitrary SQL commands via the link_id parameter in a show_review action.    7.5  High  2017-01-07  2011-04-29  View
51988  CVE-2009-4871  SQL injection vulnerability in globepersonnel_forum.asp in Logoshows BBS 2.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter.    7.5  High  2017-01-07  2010-05-11  View
52244  CVE-2007-0007  gnucash 2.0.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) gnucash.trace, (2) qof.trace, and (3) qof.trace.[PID] temporary files.    3.6  Low  2017-01-07  2011-03-07  View
52500  CVE-2007-0272  Multiple buffer overflows in MDSYS.MD in Oracle Database 8.1.7.4, 9.0.1.5, 9.2.0.7, and 10.1.0.4 allows remote authenticated users to cause a denial of service (crash) or execute arbitrary code via unspecified vectors involving certain public procedures, aka DB05.    8.5  High  2017-01-07  2012-10-22  View

Page 1247 of 17672, showing 5 records out of 88360 total, starting on record 6231, ending on 6235

Actions