NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49561  CVE-2009-2313  Directory traversal vulnerability in index.php in Jinzora Media Jukebox 2.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the name parameter.    7.5  High  2017-01-07  2009-07-02  View
50329  CVE-2009-3114  The RSS reader widget in IBM Lotus Notes 8.0 and 8.5 saves items from an RSS feed as local HTML documents, which allows remote attackers to execute arbitrary script in Internet Explorer"s Local Machine Zone via a crafted feed, aka SPR RGAU7RDJ9K.    7.5  High  2017-01-07  2009-10-01  View
51865  CVE-2009-4748  SQL injection vulnerability in mycategoryorder.php in the My Category Order plugin 2.8 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the parentID parameter in an act_OrderCategories action to wp-admin/post-new.php.    7.5  High  2017-01-07  2010-03-29  View
52377  CVE-2007-0145  PHP remote file inclusion vulnerability in bn_smrep1.php in BinGoPHP News (BP News) 3.01 allows remote attackers to execute arbitrary PHP code via a URL in the bnrep parameter, a different vector than CVE-2006-4648 and CVE-2006-4649.    7.5  High  2017-01-07  2008-11-15  View
53145  CVE-2007-0930  Variable extract vulnerability in Apache Stats before 0.0.3beta allows attackers to modify arbitrary variables and conduct attacks via unknown vectors involving the use of PHP"s extract function.    7.5  High  2017-01-07  2011-03-07  View

Page 14549 of 17672, showing 5 records out of 88360 total, starting on record 72741, ending on 72745

Actions