NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49837  CVE-2009-2594  Cross-site scripting (XSS) vulnerability in censura.php in Censura 1.16.04 allows remote attackers to inject arbitrary web script or HTML via the itemid parameter in a details action.    4.3  Medium  2017-01-07  2009-07-24  View
50605  CVE-2009-3404  Unspecified vulnerability in the PeopleSoft PeopleTools & Enterprise Portal component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.23 allows remote authenticated users to affect integrity via unknown vectors.    Medium  2017-01-07  2012-10-22  View
51373  CVE-2009-4228  Stack consumption vulnerability in u_bound.c in Xfig 3.2.5b and earlier allows remote attackers to cause a denial of service (application crash) via a long string in a malformed .fig file that uses the 1.3 file format, possibly related to the readfp_fig function in f_read.c.    4.3  Medium  2017-01-07  2011-01-20  View
51629  CVE-2009-4512  Directory traversal vulnerability in index.php in Oscailt 3.3, when Use Friendly URL"s is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the obj_id parameter.    5.1  Medium  2017-01-07  2010-01-11  View
52397  CVE-2007-0166  The jail rc.d script in FreeBSD 5.3 up to 6.2 does not verify pathnames when writing to /var/log/console.log during a jail start-up, or when file systems are mounted or unmounted, which allows local root users to overwrite arbitrary files, or mount/unmount files, outside of the jail via a symlink attack.    6.6  Medium  2017-01-07  2008-11-15  View

Page 14759 of 17672, showing 5 records out of 88360 total, starting on record 73791, ending on 73795

Actions