NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47499  CVE-2009-0162  Cross-site scripting (XSS) vulnerability in Safari before 3.2.3, and 4 Public Beta, on Apple Mac OS X 10.5 before 10.5.7 and Windows allows remote attackers to inject arbitrary web script or HTML via a crafted feed: URL.    4.3  Medium  2017-01-07  2009-05-16  View
47501  CVE-2009-0164  The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks.    6.4  Medium  2017-01-07  2009-05-16  View
48792  CVE-2009-1519  Directory traversal vulnerability in index.php in Pecio CMS 1.1.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the language parameter.    Medium  2017-01-07  2009-05-16  View
47839  CVE-2009-0507  IBM WebSphere Process Server (WPS) 6.1.2 before 6.1.2.3 and 6.2 before 6.2.0.1 does not properly restrict configuration data during an export of the cluster configuration file from the administrative console, which allows remote authenticated users to obtain the (1) JMSAPI, (2) ESCALATION, and (3) MAILSESSION (aka mail session) cleartext passwords via vectors involving access to a cluster member.    Medium  2017-01-07  2009-05-16  View
6394  CVE-2008-6663  SQL injection vulnerability in profile.php in PHPAuctions.info PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands via the auction_id parameter, a different vector than CVE-2009-0106.    7.5  High  2017-01-03  2009-05-16  View

Page 14601 of 17672, showing 5 records out of 88360 total, starting on record 73001, ending on 73005

Actions