NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48061  CVE-2009-0742  The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Control Engine Appliance stores a cleartext password by default, which allows context-dependent attackers to obtain sensitive information.    7.8  High  2017-01-07  2009-02-27  View
47855  CVE-2009-0523  Cross-site scripting (XSS) vulnerability in Adobe RoboHelp Server 6 and 7 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, which is not properly handled when displaying the Help Errors log.    4.3  Medium  2017-01-07  2009-02-27  View
47856  CVE-2009-0524  Cross-site scripting (XSS) vulnerability in Adobe RoboHelp 6 and 7, and RoboHelp Server 6 and 7, allows remote attackers to inject arbitrary web script or HTML via vectors involving files produced by RoboHelp.    4.3  Medium  2017-01-07  2009-02-27  View
4609  CVE-2008-4795  The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which allows remote attackers to inject arbitrary web script or HTML via cross-site scripting (XSS) attacks.    4.3  Medium  2017-01-03  2009-02-26  View
2072  CVE-2008-2138  Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read the contents of /dav_portal/portal/ by sending a request containing a trailing "%0A" (encoded line feed), then using the session ID that is generated from that request. NOTE: as of 20080512, Oracle has not commented on the accuracy of this report.    Medium  2017-01-03  2009-02-26  View

Page 14872 of 17672, showing 5 records out of 88360 total, starting on record 74356, ending on 74360

Actions