NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47696 | CVE-2009-0364 | Format string vulnerability in the mini_calendar component in Citadel.org WebCit 7.22, and other versions before 7.39, allows remote attackers to execute arbitrary code via unspecified vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-04-02 | View | |
| 6225 | CVE-2008-6494 | ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 5460 | CVE-2008-5718 | The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title. | 2 | 9.3 | High | 2017-01-03 | 2009-04-02 | View | |
| 48468 | CVE-2009-1175 | Cross-site scripting (XSS) vulnerability in apps/web/vs_diag.cgi in the DAAP extension in Banshee 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the server parameter, which is not properly handled in an error message. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-02 | View | |
| 6229 | CVE-2008-6498 | Cross-site request forgery (CSRF) vulnerability in security/xamppsecurity.php in XAMPP 1.6.8 allows remote attackers to hijack the authentication of users for requests that change a certain .htaccess password via the xampppasswd parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-02 | View |
Page 14747 of 17672, showing 5 records out of 88360 total, starting on record 73731, ending on 73735