NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2651 | CVE-2008-2757 | SQL injection vulnerability in search.asp in Xigla Absolute News Manager XE 3.2 allows remote authenticated administrators to execute arbitrary SQL commands via the orderby parameter. | 2 | 6.5 | Medium | 2017-01-03 | 2009-04-23 | View | |
| 48579 | CVE-2009-1292 | UCM-CQ in IBM Rational ClearCase 7.0.0.x before 7.0.0.5, 7.0.1.x before 7.0.1.4, and 7.1.x before 7.1.0.1 on Linux and AIX places a username and password on the command line, which allows local users to obtain credentials by listing the process. | 2 | 2.1 | Low | 2017-01-07 | 2009-04-23 | View | |
| 48580 | CVE-2009-1293 | The web login functionality (c/portal/login) in Novell Teaming 1.0 through SP3 (1.0.3) generates different error messages depending on whether the username is valid or invalid, which makes it easier for remote attackers to enumerate usernames. | 2 | 5 | Medium | 2017-01-07 | 2009-04-23 | View | |
| 48581 | CVE-2009-1294 | Multiple cross-site scripting (XSS) vulnerabilities in web/guest/home in the Liferay 4.3.0 portal in Novell Teaming 1.0 through SP3 (1.0.3) allow remote attackers to inject arbitrary web script or HTML via the (1) p_p_state or (2) p_p_mode parameters. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-23 | View | |
| 58076 | CVE-2007-6055 | Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Portal 4.1.0 and 4.1.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter. NOTE: this issue reportedly exists because of a regression that followed a fix at an unspecified earlier date. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-23 | View |
Page 14666 of 17672, showing 5 records out of 88360 total, starting on record 73326, ending on 73330