NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49400 | CVE-2009-2138 | Multiple open redirect vulnerabilities in TBDev.NET 01-01-08 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the returnto parameter to login.php or (2) the returnto parameter in a delete action to news.php. NOTE: this can be leveraged for cross-site scripting (XSS) by redirecting to a data: URI. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-25 | View | |
| 49163 | CVE-2009-1898 | The secure login page in the Administrative Console component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35 does not redirect to an https page upon receiving an http request, which makes it easier for remote attackers to read the contents of WAS sessions by sniffing the network. | 2 | 5 | Medium | 2017-01-07 | 2009-06-24 | View | |
| 49166 | CVE-2009-1901 | The Security component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35 permits "non-standard http methods," which has unknown impact and remote attack vectors. | 2 | 10 | High | 2017-01-07 | 2009-06-24 | View | |
| 49432 | CVE-2009-2170 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.0 before 1.0.12 and 1.1 before 1.1.5 allow remote attackers to inject arbitrary web script or HTML via unknown vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-24 | View | |
| 49433 | CVE-2009-2171 | Mahara 1.1 before 1.1.5 does not apply permission checks when saving a view that contains artefacts, which allows remote authenticated users to read another user"s artefact. | 2 | 4 | Medium | 2017-01-07 | 2009-06-24 | View |
Page 14506 of 17672, showing 5 records out of 88360 total, starting on record 72526, ending on 72530