NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47696  CVE-2009-0364  Format string vulnerability in the mini_calendar component in Citadel.org WebCit 7.22, and other versions before 7.39, allows remote attackers to execute arbitrary code via unspecified vectors.    7.5  High  2017-01-07  2009-04-02  View
6225  CVE-2008-6494  ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.    Medium  2017-01-03  2009-04-02  View
5460  CVE-2008-5718  The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title.    9.3  High  2017-01-03  2009-04-02  View
48468  CVE-2009-1175  Cross-site scripting (XSS) vulnerability in apps/web/vs_diag.cgi in the DAAP extension in Banshee 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the server parameter, which is not properly handled in an error message.    4.3  Medium  2017-01-07  2009-04-02  View
6229  CVE-2008-6498  Cross-site request forgery (CSRF) vulnerability in security/xamppsecurity.php in XAMPP 1.6.8 allows remote attackers to hijack the authentication of users for requests that change a certain .htaccess password via the xampppasswd parameter.    6.8  Medium  2017-01-03  2009-04-02  View

Page 14747 of 17672, showing 5 records out of 88360 total, starting on record 73731, ending on 73735

Actions