NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51154  CVE-2009-4000  Directory traversal vulnerability in goform/formExportDataLogs in HP Power Manager before 4.2.10 allows remote attackers to overwrite arbitrary files, and execute arbitrary code, via directory traversal sequences in the fileName parameter.    10  High  2017-01-07  2011-04-28  View
51410  CVE-2009-4270  Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file, as originally reported for debug logging code in gdevcups.c in the CUPS output driver.    9.3  High  2017-01-07  2015-01-09  View
51666  CVE-2009-4549  Stack-based buffer overflow in A2 Media Player Pro 2.51 allows remote attackers to execute arbitrary code via a long string in a (1) .m3u or (2) .m3l playlist file.    9.3  High  2017-01-07  2010-01-05  View
51922  CVE-2009-4805  Multiple SQL injection vulnerabilities in EZ-Blog Beta 1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the storyid parameter to public/view.php or (2) the kill parameter to admin/remove.php.    6.8  Medium  2017-01-07  2010-05-26  View
52178  CVE-2009-5077  CRE Loaded before 6.2.14 allows remote attackers to bypass authentication and gain administrator privileges via vectors related to a modified PHP_SELF variable, which is not properly handled by (1) includes/application_top.php and (2) admin/includes/application_top.php.    7.5  High  2017-01-07  2012-04-25  View

Page 14933 of 17672, showing 5 records out of 88360 total, starting on record 74661, ending on 74665

Actions