NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 51423 | CVE-2009-4300 | Multiple unspecified authentication plugins in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 store the MD5 hashes for passwords in the user table, even when the cached hashes are not used by the plugin, which might make it easier for attackers to obtain credentials via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-12-16 | View | |
| 51679 | CVE-2009-4562 | Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the from parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2010-01-05 | View | |
| 51935 | CVE-2009-4818 | Unrestricted file upload vulnerability in upload.php in PHPSimplicity Simplicity oF Upload 1.3.2 allows remote attackers to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by .php.gif. | 2 | 6.8 | Medium | 2017-01-07 | 2010-04-28 | View | |
| 52191 | CVE-2009-5090 | SQL injection vulnerability in editcomments.php in Bloggeruniverse Beta 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter and possibly other unspecified vectors. | 2 | 6.8 | Medium | 2017-01-07 | 2011-09-14 | View | |
| 52447 | CVE-2007-0218 | Microsoft Internet Explorer 5.01 and 6 allows remote attackers to execute arbitrary code by instantiating certain COM objects from Urlmon.dll, which triggers memory corruption during a call to the IObjectSafety function. | 2 | 9.3 | High | 2017-01-07 | 2013-09-07 | View |
Page 15135 of 17672, showing 5 records out of 88360 total, starting on record 75671, ending on 75675