NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49362 | CVE-2009-2100 | Directory traversal vulnerability in the JoomlaPraise Projectfork (com_projectfork) component 2.0.10 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the section parameter to index.php. | 2 | 5 | Medium | 2017-01-07 | 2009-10-08 | View | |
| 49618 | CVE-2009-2371 | Advanced Forum 6.x before 6.x-1.1, a module for Drupal, does not prevent users from modifying user signatures after the associated comment format has been changed to an administrator-controlled input format, which allows remote authenticated users to inject arbitrary web script, HTML, and possibly PHP code via a crafted user signature. | 2 | 6.5 | Medium | 2017-01-07 | 2009-07-08 | View | |
| 49874 | CVE-2009-2633 | PHP remote file inclusion vulnerability in toolbar_ext.php in the VehicleManager (com_vehiclemanager) component 1.0 Basic for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-07-29 | View | |
| 50130 | CVE-2009-2909 | Integer signedness error in the ax25_setsockopt function in net/ax25/af_ax25.c in the ax25 subsystem in the Linux kernel before 2.6.31.2 allows local users to cause a denial of service (OOPS) via a crafted optlen value in an SO_BINDTODEVICE operation. | 2 | 4.9 | Medium | 2017-01-07 | 2012-03-19 | View | |
| 50386 | CVE-2009-3181 | Directory traversal vulnerability in Anantasoft Gazelle CMS 1.0 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the customizetemplate parameter in a direct request to admin/settemplate.php. | 2 | 5 | Medium | 2017-01-07 | 2009-09-16 | View |
Page 14596 of 17672, showing 5 records out of 88360 total, starting on record 72976, ending on 72980