NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47574  CVE-2009-0240  listing.php in WebSVN 2.0 and possibly 1.7 beta, when using an SVN authz file, allows remote authenticated users to read changelogs or diffs for restricted projects via a modified repname parameter.    3.5  Low  2017-01-07  2011-09-12  View
47830  CVE-2009-0498  Virtual GuestBook (vgbook) 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to guestbook.mdb.    Medium  2017-01-07  2009-02-12  View
48086  CVE-2009-0767  Kipper 2.01 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing credentials via a direct request for job/config.data.    Medium  2017-01-07  2009-03-06  View
48342  CVE-2009-1032  SQL injection vulnerability in gallery_list.php in YABSoft Advanced Image Hosting (AIH) Script 2.3 allows remote attackers to execute arbitrary SQL commands via the gal parameter.    7.5  High  2017-01-07  2009-04-01  View
48598  CVE-2009-1311  Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-assisted remote attackers to obtain sensitive information via a web page with an embedded frame, which causes POST data from an outer page to be sent to the inner frame"s URL during a SAVEMODE_FILEONLY save of the inner frame.    4.3  Medium  2017-01-07  2010-08-21  View

Page 14868 of 17672, showing 5 records out of 88360 total, starting on record 74336, ending on 74340

Actions