NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50901  CVE-2009-3715  Multiple SQL injection vulnerabilities in scr_login.php in MCshoutbox 1.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.    6.8  Medium  2017-01-07  2009-10-16  View
51157  CVE-2009-4003  Multiple integer overflows in Adobe Shockwave Player before 11.5.6.606 allow remote attackers to execute arbitrary code via (1) an unspecified block type in a Shockwave file, leading to a heap-based buffer overflow; and might allow remote attackers to execute arbitrary code via (2) an unspecified 3D block in a Shockwave file, leading to memory corruption; or (3) a crafted 3D model in a Shockwave file, leading to heap memory corruption.    9.3  High  2017-01-07  2010-08-21  View
51413  CVE-2009-4273  stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a request.    10  High  2017-01-07  2010-08-21  View
51669  CVE-2009-4552  Cross-site scripting (XSS) vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.    4.3  Medium  2017-01-07  2010-01-05  View
51925  CVE-2009-4808  admin.php in Graugon PHP Article Publisher 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the g_admin cookie to 1.    7.5  High  2017-01-07  2010-04-26  View

Page 15114 of 17672, showing 5 records out of 88360 total, starting on record 75566, ending on 75570

Actions