NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5100 | CVE-2008-5322 | Wysi Wiki Wyg 1.0 allows remote attackers to obtain system information via an invalid categup parameter to index.php, which calls the phpinfo function. | 2 | 7.8 | High | 2017-01-03 | 2009-02-05 | View | |
| 56050 | CVE-2007-3912 | checkrestart in debian-goodies before 0.34 allows local users to gain privileges via shell metacharacters in the name of the executable file for a running process. | 2 | 7.2 | High | 2017-01-07 | 2009-02-05 | View | |
| 47606 | CVE-2009-0272 | Cross-site request forgery (CSRF) vulnerability in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allows remote attackers to insert e-mail forwarding rules, and modify unspecified other configuration settings, as arbitrary users via unknown vectors. | 2 | 6.8 | Medium | 2017-01-07 | 2009-02-05 | View | |
| 47607 | CVE-2009-0273 | Multiple cross-site scripting (XSS) vulnerabilities in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allow remote attackers to inject arbitrary web script or HTML via the (1) User.id and (2) Library.queryText parameters to gw/webacc, and other vectors involving (3) HTML e-mail and (4) HTML attachments. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-05 | View | |
| 4603 | CVE-2008-4789 | The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error." | 2 | 6 | Medium | 2017-01-03 | 2009-02-05 | View |
Page 14950 of 17672, showing 5 records out of 88360 total, starting on record 74746, ending on 74750