NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48533  CVE-2009-1246  Multiple directory traversal vulnerabilities in Blogplus 1.0 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) row_mysql_blocks_center_down[file] parameter to includes/block_center_down.php; (2) row_mysql_blocks_center_top[file] includes/parameter to block_center_top.php; (3) row_mysql_blocks_left[file] parameter to includes/block_left.php; (4) row_mysql_blocks_right[file] parameter to includes/block_right.php; and row_mysql_bloginfo[theme] parameter to (5) includes/window_down.php and (6) includes/window_top.php.    7.5  High  2017-01-07  2009-04-06  View
48789  CVE-2009-1516  Stack-based buffer overflow in the IceWarpServer.APIObject ActiveX control in api.dll in IceWarp Merak Mail Server 9.4.1 might allow context-dependent attackers to execute arbitrary code via a large value in the second argument to the Base64FileEncode method, as possibly demonstrated by a web application that accepts untrusted input for this method.    7.5  High  2017-01-07  2009-05-05  View
49301  CVE-2009-2039  Unspecified vulnerability in the Luottokunta module before 1.3 for osCommerce has unknown impact and attack vectors related to orders.    10  High  2017-01-07  2009-06-15  View
49557  CVE-2009-2309  SQL injection vulnerability in index.php in Codice CMS 2 allows remote attackers to execute arbitrary SQL commands via the tag parameter.    7.5  High  2017-01-07  2009-07-02  View
49813  CVE-2009-2570  Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFaxDCCFAXVW.DLL in Symantec WinFax Pro 10.03 allows remote attackers to execute arbitrary code via a long argument to the AppendFax method.    9.3  High  2017-01-07  2010-02-13  View

Page 14411 of 17672, showing 5 records out of 88360 total, starting on record 72051, ending on 72055

Actions