NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 51154 | CVE-2009-4000 | Directory traversal vulnerability in goform/formExportDataLogs in HP Power Manager before 4.2.10 allows remote attackers to overwrite arbitrary files, and execute arbitrary code, via directory traversal sequences in the fileName parameter. | 2 | 10 | High | 2017-01-07 | 2011-04-28 | View | |
| 51410 | CVE-2009-4270 | Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file, as originally reported for debug logging code in gdevcups.c in the CUPS output driver. | 2 | 9.3 | High | 2017-01-07 | 2015-01-09 | View | |
| 51666 | CVE-2009-4549 | Stack-based buffer overflow in A2 Media Player Pro 2.51 allows remote attackers to execute arbitrary code via a long string in a (1) .m3u or (2) .m3l playlist file. | 2 | 9.3 | High | 2017-01-07 | 2010-01-05 | View | |
| 51922 | CVE-2009-4805 | Multiple SQL injection vulnerabilities in EZ-Blog Beta 1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the storyid parameter to public/view.php or (2) the kill parameter to admin/remove.php. | 2 | 6.8 | Medium | 2017-01-07 | 2010-05-26 | View | |
| 52178 | CVE-2009-5077 | CRE Loaded before 6.2.14 allows remote attackers to bypass authentication and gain administrator privileges via vectors related to a modified PHP_SELF variable, which is not properly handled by (1) includes/application_top.php and (2) admin/includes/application_top.php. | 2 | 7.5 | High | 2017-01-07 | 2012-04-25 | View |
Page 14933 of 17672, showing 5 records out of 88360 total, starting on record 74661, ending on 74665