NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48172 | CVE-2009-0857 | Cross-site scripting (XSS) vulnerability in /prm/reports in the Performance Reporting Module (PRM) for Sun Management Center (SunMC) 3.6.1 and 4.0 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: this can be leveraged for access to the SunMC Web Console. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-17 | View | |
| 48184 | CVE-2009-0869 | Buffer overflow in the client in IBM Tivoli Storage Manager (TSM) HSM 5.3.2.0 through 5.3.5.0, 5.4.0.0 through 5.4.2.5, and 5.5.0.0 through 5.5.1.4 on Windows allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors. | 2 | 10 | High | 2017-01-07 | 2009-06-17 | View | |
| 6253 | CVE-2008-6522 | Multiple directory traversal vulnerabilities in the RenderFile function in ContentRender.class.php in Terracotta (aka OpenTerracotta) 0.6.1, and possibly other versions, allow remote attackers to list arbitrary directories and read arbitrary files via a .. (dot dot) in the (1) CurrentDirectory and (2) File parameters to index.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-06-17 | View | |
| 6269 | CVE-2008-6538 | DeStar 0.2.2-5 allows remote attackers to add arbitrary users via a direct request to config/add/CfgOptUser. | 2 | 5 | Medium | 2017-01-03 | 2009-06-17 | View | |
| 6270 | CVE-2008-6539 | Static code injection vulnerability in user/settings/ in DeStar 0.2.2-5 allows remote authenticated users to add arbitrary administrators and inject arbitrary Python code into destar_cfg.py via a crafted pin parameter. | 2 | 6.5 | Medium | 2017-01-03 | 2009-06-17 | View |
Page 14535 of 17672, showing 5 records out of 88360 total, starting on record 72671, ending on 72675