NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50900  CVE-2009-3714  Cross-site scripting (XSS) vulnerability in admin_login.php in MCshoutbox 1.1 allows remote attackers to inject arbitrary web script or HTML via the loginerror parameter.    4.3  Medium  2017-01-07  2009-10-16  View
51156  CVE-2009-4002  Heap-based buffer overflow in Adobe Shockwave Player before 11.5.6.606 allows remote attackers to execute arbitrary code via a crafted 3D model in a Shockwave file.    9.3  High  2017-01-07  2010-08-21  View
51412  CVE-2009-4272  A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (deadlock) via crafted packets that force collisions in the IPv4 routing hash table, and trigger a routing "emergency" in which a hash chain is too long. NOTE: this is related to an issue in the Linux kernel before 2.6.31, when the kernel routing cache is disabled, involving an uninitialized pointer and a panic.    7.8  High  2017-01-07  2012-03-19  View
51668  CVE-2009-4551  SQL injection vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a results action to index.php.    7.5  High  2017-01-07  2010-01-05  View
51924  CVE-2009-4807  Multiple SQL injection vulnerabilities in Graugon PHP Article Publisher 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) c parameter to index.php and the (2) id parameter to view.php.    7.5  High  2017-01-07  2010-04-26  View

Page 15053 of 17672, showing 5 records out of 88360 total, starting on record 75261, ending on 75265

Actions