NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49597  CVE-2009-2350  Microsoft Internet Explorer 6.0.2900.2180 and earlier does not block javascript: URIs in Refresh headers in HTTP responses, which allows remote attackers to conduct cross-site scripting (XSS) attacks via vectors related to (1) injecting a Refresh header or (2) specifying the content of a Refresh header, a related issue to CVE-2009-1312.    4.3  Medium  2017-01-07  2009-09-02  View
50109  CVE-2009-2887  Cross-site scripting (XSS) vulnerability in bios.php in PHP Scripts Now President Bios allows remote attackers to inject arbitrary web script or HTML via the rank parameter.    4.3  Medium  2017-01-07  2009-08-20  View
50621  CVE-2009-3420  Multiple cross-site scripting (XSS) vulnerabilities in index.php in the Publisher module 2.0 for Miniweb allow remote attackers to inject arbitrary web script or HTML via the (1) begin parameter and the (2) PATH_INFO.    4.3  Medium  2017-01-07  2009-09-28  View
51645  CVE-2009-4528  The Organic Groups (OG) Vocabulary module 6.x before 6.x-1.0 for Drupal allows remote authenticated group members to bypass intended access restrictions, and create, modify, or read a vocabulary, via unspecified vectors.    6.5  Medium  2017-01-07  2010-01-06  View
53181  CVE-2007-0969  Multiple cross-site scripting (XSS) vulnerabilities in WebTester 5.0.20060927 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to POST parameters to multiple files.    6.8  Medium  2017-01-07  2011-03-07  View

Page 15327 of 17672, showing 5 records out of 88360 total, starting on record 76631, ending on 76635

Actions