NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49175  CVE-2009-1910  SQL injection vulnerability in index.php in RTWebalbum 1.0.462 allows remote attackers to execute arbitrary SQL commands via the AlbumId parameter.    7.5  High  2017-01-07  2009-06-05  View
49431  CVE-2009-2169  Insecure method vulnerability in the PDFVIEWER.PDFViewerCtrl.1 ActiveX control (pdfviewer.ocx) in Edraw PDF Viewer Component before 3.2.0.126 allows remote attackers to create and overwrite arbitrary files via a URL argument to the FtpConnect argument and a target filename argument to the FtpDownloadFile method. NOTE: this can be leveraged for code execution by writing to a Startup folder.    9.3  High  2017-01-07  2009-06-23  View
49687  CVE-2009-2442  Cross-site scripting (XSS) vulnerability in public/index.php in Linea21 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the search parameter in a resultats-recherche action.    4.3  Medium  2017-01-07  2009-07-13  View
49943  CVE-2009-2702  KDE KSSL in kdelibs 3.5.4, 4.2.4, and 4.3 does not properly handle a "" character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.    7.5  High  2017-01-07  2012-01-18  View
50199  CVE-2009-2982  An unspecified certificate in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow remote attackers to conduct a "social engineering attack" via unknown vectors.    9.3  High  2017-01-07  2010-08-21  View

Page 1426 of 17672, showing 5 records out of 88360 total, starting on record 7126, ending on 7130

Actions