NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47590 | CVE-2009-0256 | Session fixation vulnerability in the authentication library in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allows remote attackers to hijack web sessions via unspecified vectors related to (1) frontend and (2) backend authentication. | 2 | 7.5 | High | 2017-01-07 | 2009-01-29 | View | |
| 3815 | CVE-2008-3953 | SQL injection vulnerability in keyword_search_action.php in Vastal I-Tech Shaadi Zone 1.0.9 allows remote attackers to execute arbitrary SQL commands via the tage parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5351 | CVE-2008-5602 | Natterchat 1.12 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for natterchat112.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 47591 | CVE-2009-0257 | Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) content of indexed files to the (a) Indexed Search Engine (indexed_search) system extension; (b) unspecified test scripts in the ADOdb system extension; and (c) unspecified vectors in the Workspace module. | 2 | 4.3 | Medium | 2017-01-07 | 2009-01-29 | View | |
| 5352 | CVE-2008-5603 | ASPTicker 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for news.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 15070 of 17672, showing 5 records out of 88360 total, starting on record 75346, ending on 75350