NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49018  CVE-2009-1749  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Catviz 0.4.0 beta 1 allow remote attackers to inject arbitrary web script or HTML via the (1) userman_form and (2) webpages_form parameters.    4.3  Medium  2017-01-07  2009-06-09  View
49019  CVE-2009-1750  Unrestricted file upload vulnerability in VidSharePro allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors.    Medium  2017-01-07  2009-06-09  View
49020  CVE-2009-1751  SQL injection vulnerability in list_list.php in Realty Webware Technologies Web-Base 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2009-06-09  View
47998  CVE-2009-0672  SQL injection vulnerability in the Resend_Email module in Raven Web Services RavenNuke 2.30 allows remote authenticated administrators to execute arbitrary SQL commands via the user_prefix parameter to modules.php.    6.5  Medium  2017-01-07  2009-06-09  View
49280  CVE-2009-2018  SQL injection vulnerability in admin/index.php in Jared Eckersley MyCars, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the authuserid parameter.    6.8  Medium  2017-01-07  2009-06-09  View

Page 14554 of 17672, showing 5 records out of 88360 total, starting on record 72766, ending on 72770

Actions