NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47637 | CVE-2009-0303 | Cross-site scripting (XSS) vulnerability in Web Help Desk before 9.1.18 allows remote attackers to inject arbitrary web script or HTML via vectors related to "encoded JavaScript" and Helpdesk.woa. | 2 | 4.3 | Medium | 2017-01-07 | 2009-01-28 | View | |
| 47643 | CVE-2009-0311 | The Backbone service (ftbackbone.exe) in EMC AutoStart before 5.3 SP2 allows remote attackers to execute arbitrary code via a packet with a crafted value that is dereferenced as a function pointer. | 2 | 10 | High | 2017-01-07 | 2009-01-28 | View | |
| 4503 | CVE-2008-4689 | Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijack sessions. | 2 | 7.5 | High | 2017-01-03 | 2009-01-28 | View | |
| 54958 | CVE-2007-2795 | Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) the authentication feature in IMailsec.dll, which triggers heap corruption in the IMail Server, or (2) a long SUBSCRIBE IMAP command, which triggers a stack-based buffer overflow in the IMAP Daemon. | 2 | 9 | High | 2017-01-07 | 2009-01-28 | View | |
| 4606 | CVE-2008-4792 | The core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unspecified content fields of an internal Drupal form, which allows remote authenticated users to bypass intended access restrictions via modified field values. | 2 | 6 | Medium | 2017-01-03 | 2009-01-28 | View |
Page 15085 of 17672, showing 5 records out of 88360 total, starting on record 75421, ending on 75425