NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57677  CVE-2007-5614  Mortbay Jetty before 6.1.6rc1 does not properly handle "certain quote sequences" in HTML cookie parameters, which allows remote attackers to hijack browser sessions via unspecified vectors.    7.5  High  2017-01-07  2009-06-10  View
57678  CVE-2007-5615  CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.    Medium  2017-01-07  2009-06-10  View
49285  CVE-2009-2023  SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the current_currency parameter.    6.8  Medium  2017-01-07  2009-06-10  View
49286  CVE-2009-2024  Vlad Titarenko ASP VT Auth 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file and obtain usernames and passwords via a direct request for zHk8dEes3.txt.    Medium  2017-01-07  2009-06-10  View
49287  CVE-2009-2025  admin/login.php in DM FileManager 3.9.2 allows remote attackers to bypass authentication and gain administrative access by setting the (1) USER, (2) GROUPID, (3) GROUP, and (4) USERID cookies to certain values.    7.5  High  2017-01-07  2009-06-10  View

Page 14544 of 17672, showing 5 records out of 88360 total, starting on record 72716, ending on 72720

Actions