NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48731  CVE-2009-1455  Multiple cross-site request forgery (CSRF) vulnerabilities in WebCollab before 2.50 (aka Billy Goat) allow remote attackers to hijack the authentication of administrators for requests that change an arbitrary password or have other unspecified impact.    6.8  Medium  2017-01-07  2009-04-28  View
6492  CVE-2008-6761  Static code injection vulnerability in admin/install.php in Flexcustomer 0.0.6 might allow remote attackers to inject arbitrary PHP code into const.inc.php via the installdbname parameter (aka the Database Name field). NOTE: the installation instructions specify deleting admin/install.php.    10  High  2017-01-03  2009-04-28  View
48732  CVE-2009-1456  Directory traversal vulnerability in admin.php in Malleo 1.2.3 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the module parameter.    6.5  Medium  2017-01-07  2009-04-28  View
6494  CVE-2008-6763  login2.php in Silentum LoginSys 1.0.0 allows remote attackers to bypass authentication and obtain access to an arbitrary account by setting the logged_in cookie to that account"s username.    7.5  High  2017-01-03  2009-04-28  View
48734  CVE-2009-1458  Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in razorCMS before 0.4 allow remote attackers to inject arbitrary web script or HTML via (1) the slab parameter in an edit action, (2) the catname parameter in a showcats action, and (3) the cat parameter in a reordercat action.    4.3  Medium  2017-01-07  2009-04-28  View

Page 14653 of 17672, showing 5 records out of 88360 total, starting on record 73261, ending on 73265

Actions