NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48847  CVE-2009-1578  Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.4.18 and NaSMail before 1.7 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) certain encrypted strings in e-mail headers, related to contrib/decrypt_headers.php; (2) PHP_SELF; and (3) the query string (aka QUERY_STRING).    4.3  Medium  2017-01-07  2010-08-21  View
49103  CVE-2009-1837  Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to execute arbitrary code via a page transition during Java applet loading, related to a use-after-free vulnerability for memory associated with a destroyed Java object.    9.3  High  2017-01-07  2010-08-21  View
49359  CVE-2009-2097  SQL injection vulnerability in system/application/controllers/catalog.php in Zoki Soft Zoki Catalog (aka Smart Catalog) allows remote attackers to execute arbitrary SQL commands via the search_text parameter. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2009-06-18  View
49615  CVE-2009-2368  Unspecified vulnerability in Socks Server 5 before 3.7.8-8 has unknown impact and attack vectors.    10  High  2017-01-07  2009-07-08  View
49871  CVE-2009-2629  Buffer underflow in src/http/ngx_http_parse.c in nginx 0.1.0 through 0.5.37, 0.6.x before 0.6.39, 0.7.x before 0.7.62, and 0.8.x before 0.8.15 allows remote attackers to execute arbitrary code via crafted HTTP requests.    7.5  High  2017-01-07  2009-12-19  View

Page 14751 of 17672, showing 5 records out of 88360 total, starting on record 73751, ending on 73755

Actions