NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50645  CVE-2009-3444  Cross-site scripting (XSS) vulnerability in email.php in e107 0.7.16 and earlier allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header in a news.1 (aka news to email) action.    4.3  Medium  2017-01-07  2009-10-03  View
50901  CVE-2009-3715  Multiple SQL injection vulnerabilities in scr_login.php in MCshoutbox 1.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.    6.8  Medium  2017-01-07  2009-10-16  View
51157  CVE-2009-4003  Multiple integer overflows in Adobe Shockwave Player before 11.5.6.606 allow remote attackers to execute arbitrary code via (1) an unspecified block type in a Shockwave file, leading to a heap-based buffer overflow; and might allow remote attackers to execute arbitrary code via (2) an unspecified 3D block in a Shockwave file, leading to memory corruption; or (3) a crafted 3D model in a Shockwave file, leading to heap memory corruption.    9.3  High  2017-01-07  2010-08-21  View
51413  CVE-2009-4273  stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a request.    10  High  2017-01-07  2010-08-21  View
51669  CVE-2009-4552  Cross-site scripting (XSS) vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.    4.3  Medium  2017-01-07  2010-01-05  View

Page 14451 of 17672, showing 5 records out of 88360 total, starting on record 72251, ending on 72255

Actions