NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49633  CVE-2009-2386  Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method.    9.3  High  2017-01-07  2009-07-13  View
49889  CVE-2009-2648  FlashDen Guestbook allows remote attackers to obtain configuration information via a direct request to amfphp/phpinfo.php, which calls the phpinfo function.    Medium  2017-01-07  2009-07-31  View
50145  CVE-2009-2924  Multiple SQL injection vulnerabilities in Videos Broadcast Yourself 2 allow remote attackers to execute arbitrary SQL commands via the (1) UploadID parameter to videoint.php, and possibly the (2) cat_id parameter to catvideo.php and (3) uid parameter to cviewchannels.php.    7.5  High  2017-01-07  2009-08-21  View
50401  CVE-2009-3196  Cross-site scripting (XSS) vulnerability in index.php in JCE-Tech PHP Video Script allows remote attackers to inject arbitrary web script or HTML via the key parameter.    4.3  Medium  2017-01-07  2009-09-16  View
50657  CVE-2009-3456  Google Chrome, possibly 3.0.195.21 and earlier, does not properly handle a "" character in a domain name in the subject"s Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-07  2009-09-30  View

Page 15270 of 17672, showing 5 records out of 88360 total, starting on record 76346, ending on 76350

Actions