NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47271 | CVE-2012-6590 | The web-based management UI in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote attackers to obtain verbose error information via crafted input, aka Ref ID 33139. | 2 | 4.3 | Medium | 2017-01-19 | 2013-10-07 | View | |
| 48551 | CVE-2009-1264 | Frontend User Registration (sr_feuser_register) extension 2.5.20 and earlier for TYPO3 does not properly verify access rights, which allows remote authenticated users to obtain sensitive information such as passwords via unknown attack vectors. | 2 | 4 | Medium | 2017-01-07 | 2009-04-08 | View | |
| 49063 | CVE-2009-1797 | Multiple cross-site request forgery (CSRF) vulnerabilities on the Network Management Card (NMC) on American Power Conversion (APC) Switched Rack PDU (aka Rack Mount Power Distribution) devices and other devices allow remote attackers to hijack the authentication of (1) administrator or (2) device users for requests that create new administrative users or have unspecified other impact. | 2 | 6.8 | Medium | 2017-01-07 | 2010-06-29 | View | |
| 49319 | CVE-2009-2057 | Microsoft Internet Explorer before 8 uses the HTTP Host header to determine the context of a document provided in a (1) 4xx or (2) 5xx CONNECT response from a proxy server, which allows man-in-the-middle attackers to execute arbitrary web script by modifying this CONNECT response, aka an "SSL tampering" attack. | 2 | 5.8 | Medium | 2017-01-07 | 2009-06-25 | View | |
| 49831 | CVE-2009-2588 | Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feedback.php, (2) index.php, and (3) lostpassword.php. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-24 | View |
Page 14551 of 17672, showing 5 records out of 88360 total, starting on record 72751, ending on 72755