NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49363  CVE-2009-2101  Directory traversal vulnerability in archive.php in TorrentVolve 1.4, when register_globals is enabled, allows remote attackers to delete arbitrary files via a .. (dot dot) in the deleteTorrent parameter.    6.8  Medium  2017-01-07  2009-06-18  View
49619  CVE-2009-2372  Drupal 6.x before 6.13 does not prevent users from modifying user signatures after the associated comment format has been changed to an administrator-controlled input format, which allows remote authenticated users to inject arbitrary web script, HTML, and possibly PHP code via a crafted user signature.    6.5  Medium  2017-01-07  2009-07-08  View
49875  CVE-2009-2634  PHP remote file inclusion vulnerability in toolbar_ext.php in the MediaLibrary (com_media_library) component 1.5.3 Basic for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.    7.5  High  2017-01-07  2009-07-29  View
50131  CVE-2009-2910  arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.31.4 on the x86_64 platform does not clear certain kernel registers before a return to user mode, which allows local users to read register values from an earlier process by switching an ia32 process to 64-bit mode.    4.9  Medium  2017-01-07  2012-03-19  View
50387  CVE-2009-3182  Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in user/File/.    6.8  Medium  2017-01-07  2009-09-14  View

Page 14664 of 17672, showing 5 records out of 88360 total, starting on record 73316, ending on 73320

Actions