NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47499 | CVE-2009-0162 | Cross-site scripting (XSS) vulnerability in Safari before 3.2.3, and 4 Public Beta, on Apple Mac OS X 10.5 before 10.5.7 and Windows allows remote attackers to inject arbitrary web script or HTML via a crafted feed: URL. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-16 | View | |
| 47501 | CVE-2009-0164 | The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks. | 2 | 6.4 | Medium | 2017-01-07 | 2009-05-16 | View | |
| 48792 | CVE-2009-1519 | Directory traversal vulnerability in index.php in Pecio CMS 1.1.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the language parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-05-16 | View | |
| 47839 | CVE-2009-0507 | IBM WebSphere Process Server (WPS) 6.1.2 before 6.1.2.3 and 6.2 before 6.2.0.1 does not properly restrict configuration data during an export of the cluster configuration file from the administrative console, which allows remote authenticated users to obtain the (1) JMSAPI, (2) ESCALATION, and (3) MAILSESSION (aka mail session) cleartext passwords via vectors involving access to a cluster member. | 2 | 4 | Medium | 2017-01-07 | 2009-05-16 | View | |
| 6394 | CVE-2008-6663 | SQL injection vulnerability in profile.php in PHPAuctions.info PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands via the auction_id parameter, a different vector than CVE-2009-0106. | 2 | 7.5 | High | 2017-01-03 | 2009-05-16 | View |
Page 14601 of 17672, showing 5 records out of 88360 total, starting on record 73001, ending on 73005