NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48336 | CVE-2009-1026 | Multiple SQL injection vulnerabilities in login.php in Kim Websites 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. | 2 | 7.5 | High | 2017-01-07 | 2009-03-20 | View | |
| 48592 | CVE-2009-1305 | The JavaScript engine in Mozilla Firefox before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (application crash) and possibly trigger memory corruption via vectors involving JSOP_DEFVAR and properties that lack the JSPROP_PERMANENT attribute. | 2 | 5 | Medium | 2017-01-07 | 2010-08-21 | View | |
| 48848 | CVE-2009-1579 | The map_yp_alias function in functions/imap_general.php in SquirrelMail before 1.4.18 and NaSMail before 1.7 allows remote attackers to execute arbitrary commands via shell metacharacters in a username string that is used by the ypmatch program. | 2 | 6.8 | Medium | 2017-01-07 | 2010-08-21 | View | |
| 49104 | CVE-2009-1838 | The garbage-collection implementation in Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 sets an element"s owner document to null in unspecified circumstances, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted event handler, related to an incorrect context for this event handler. | 2 | 9.3 | High | 2017-01-07 | 2010-08-21 | View | |
| 49360 | CVE-2009-2098 | SQL injection vulnerability in topicler.php in phPortal 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-06-23 | View |
Page 14460 of 17672, showing 5 records out of 88360 total, starting on record 72296, ending on 72300