NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49867  CVE-2009-2625  XMLScanner.java in Apache Xerces2 Java, as used in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 and JDK and JRE 5.0 before Update 20, and in other products, allows remote attackers to cause a denial of service (infinite loop and application hang) via malformed XML input, as demonstrated by the Codenomicon XML fuzzing framework.    Medium  2017-01-07  2014-05-05  View
50123  CVE-2009-2902  Directory traversal vulnerability in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20 allows remote attackers to delete work-directory files via directory traversal sequences in a WAR filename, as demonstrated by the ...war filename.    4.3  Medium  2017-01-07  2016-08-22  View
50379  CVE-2009-3174  PHP remote file inclusion vulnerability in fonctions_racine.php in OBOphiX 2.7.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the chemin_lib parameter.    7.5  High  2017-01-07  2009-09-14  View
50635  CVE-2009-3434  SQL injection vulnerability in the Tupinambis (com_tupinambis) component 1.0 for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the proyecto parameter in a verproyecto action to index.php.    7.5  High  2017-01-07  2009-09-29  View
50891  CVE-2009-3705  PHP remote file inclusion vulnerability in debugger.php in Achievo before 1.4.0 allows remote attackers to execute arbitrary PHP code via a URL in the config_atkroot parameter.    7.5  High  2017-01-07  2009-10-19  View

Page 14512 of 17672, showing 5 records out of 88360 total, starting on record 72556, ending on 72560

Actions