NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47900 | CVE-2009-0571 | admin.php in Ninja Designs Mailist 3.0 stores backup copies of maillist.php under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to the backup directory. | 2 | 5 | Medium | 2017-01-07 | 2009-02-17 | View | |
| 47921 | CVE-2009-0592 | Multiple directory traversal vulnerabilities in PNphpBB2 1.2i and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ModName parameter to (1) admin_words.php, (2) admin_groups_reapir.php, (3) admin_smilies.php, (4) admin_ranks.php, (5) admin_styles.php, and (6) admin_users.php in admin/. | 2 | 7.5 | High | 2017-01-07 | 2009-02-17 | View | |
| 47922 | CVE-2009-0593 | SQL injection vulnerability in members.php in plx Auto Reminder 3.7 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a newar action. | 2 | 6.5 | Medium | 2017-01-07 | 2009-02-17 | View | |
| 47923 | CVE-2009-0594 | Cross-site scripting (XSS) vulnerability in index.php in phpSkelSite 1.4 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-17 | View | |
| 47924 | CVE-2009-0595 | PHP remote file inclusion vulnerability in skysilver/login.tpl.php in phpSkelSite 1.4, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the theme parameter. | 2 | 5.1 | Medium | 2017-01-07 | 2009-02-17 | View |
Page 14907 of 17672, showing 5 records out of 88360 total, starting on record 74531, ending on 74535