NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49120 | CVE-2009-1854 | Million Dollar Text Links 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the userid cookie to 1. | 2 | 7.5 | High | 2017-01-07 | 2009-06-02 | View | |
| 49376 | CVE-2009-2114 | Multiple cross-site scripting (XSS) vulnerabilities in admin.php in SkyBlueCanvas 1.1 r237 allow remote attackers to inject arbitrary web script or HTML via the (1) mgroup, (2) mgr, (3) objtype, (4) id, and (5) dir parameters. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-19 | View | |
| 49632 | CVE-2009-2385 | SQL injection vulnerability in the awardsMembers function in Sources/Profile.php in the Member Awards component 1.0.2 for Simple Machines Forum (SMF) allows remote attackers to execute arbitrary SQL commands via the id parameter in a profile action to index.php. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2009-07-09 | View | |
| 49888 | CVE-2009-2647 | Unspecified vulnerability in Kaspersky Anti-Virus 2010 and Kaspersky Internet Security 2010 before Critical Fix 9.0.0.463 allows remote attackers to disable the Kaspersky application via unknown attack vectors unrelated to "an external script." | 2 | 5 | Medium | 2017-01-07 | 2009-07-31 | View | |
| 50144 | CVE-2009-2923 | Multiple directory traversal vulnerabilities in BitmixSoft PHP-Lance 1.52 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) language parameter to show.php and (2) in parameter to advanced_search.php. | 2 | 5 | Medium | 2017-01-07 | 2009-08-26 | View |
Page 15201 of 17672, showing 5 records out of 88360 total, starting on record 76001, ending on 76005