NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48061 | CVE-2009-0742 | The username command in Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers and Cisco ACE 4710 Application Control Engine Appliance stores a cleartext password by default, which allows context-dependent attackers to obtain sensitive information. | 2 | 7.8 | High | 2017-01-07 | 2009-02-27 | View | |
| 47855 | CVE-2009-0523 | Cross-site scripting (XSS) vulnerability in Adobe RoboHelp Server 6 and 7 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, which is not properly handled when displaying the Help Errors log. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-27 | View | |
| 47856 | CVE-2009-0524 | Cross-site scripting (XSS) vulnerability in Adobe RoboHelp 6 and 7, and RoboHelp Server 6 and 7, allows remote attackers to inject arbitrary web script or HTML via vectors involving files produced by RoboHelp. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-27 | View | |
| 4609 | CVE-2008-4795 | The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which allows remote attackers to inject arbitrary web script or HTML via cross-site scripting (XSS) attacks. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-26 | View | |
| 2072 | CVE-2008-2138 | Oracle Application Server (OracleAS) Portal 10g allows remote attackers to bypass intended access restrictions and read the contents of /dav_portal/portal/ by sending a request containing a trailing "%0A" (encoded line feed), then using the session ID that is generated from that request. NOTE: as of 20080512, Oracle has not commented on the accuracy of this report. | 2 | 5 | Medium | 2017-01-03 | 2009-02-26 | View |
Page 14872 of 17672, showing 5 records out of 88360 total, starting on record 74356, ending on 74360