NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50686  CVE-2009-3485  Cross-site scripting (XSS) vulnerability in the J-Web interface in Juniper JUNOS 8.5R1.14 and 9.0R1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI.    4.3  Medium  2017-01-07  2009-10-05  View
50942  CVE-2009-3763  Unspecified vulnerability in the Access Manager / OpenSSO component in Oracle OpenSSO Enterprise 7.1, 7, 2005Q4, and 8.0 allows remote attackers to affect integrity via unknown vectors.    4.3  Medium  2017-01-07  2012-10-22  View
51198  CVE-2009-4046  Multiple SQL injection vulnerabilities in FrontAccounting (FA) 2.2.x before 2.2 RC allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) bank_accounts.php, (2) currencies.php, (3) exchange_rates.php, (4) gl_account_types.php, and (5) gl_accounts.php in gl/manage/; and (6) audit_trail_db.inc, (7) comments_db.inc, (8) inventory_db.inc, (9) manufacturing_db.inc, and (10) references_db.inc in includes/db/.    7.5  High  2017-01-07  2009-11-23  View
51454  CVE-2009-4331  The Install component in IBM DB2 9.5 before FP5 and 9.7 before FP1 configures the High Availability (HA) scripts with incorrect file-permission and authorization settings, which has unknown impact and local attack vectors.    7.2  High  2017-01-07  2010-10-07  View
51710  CVE-2009-4593  The bftpdutmp_log function in bftpdutmp.c in Bftpd before 2.4 does not place a "" character at the end of the string value of the ut.bu_host structure member, which might allow remote attackers to cause a denial of service (daemon crash) via unspecified vectors. NOTE: some of these details are obtained from third party information.    Medium  2017-01-07  2010-01-08  View

Page 15398 of 17672, showing 5 records out of 88360 total, starting on record 76986, ending on 76990

Actions