NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57677 | CVE-2007-5614 | Mortbay Jetty before 6.1.6rc1 does not properly handle "certain quote sequences" in HTML cookie parameters, which allows remote attackers to hijack browser sessions via unspecified vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-06-10 | View | |
| 57678 | CVE-2007-5615 | CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 49285 | CVE-2009-2023 | SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the current_currency parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 49286 | CVE-2009-2024 | Vlad Titarenko ASP VT Auth 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file and obtain usernames and passwords via a direct request for zHk8dEes3.txt. | 2 | 5 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 49287 | CVE-2009-2025 | admin/login.php in DM FileManager 3.9.2 allows remote attackers to bypass authentication and gain administrative access by setting the (1) USER, (2) GROUPID, (3) GROUP, and (4) USERID cookies to certain values. | 2 | 7.5 | High | 2017-01-07 | 2009-06-10 | View |
Page 14544 of 17672, showing 5 records out of 88360 total, starting on record 72716, ending on 72720