NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40675  CVE-2013-5359  Stack-based buffer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 might allow remote attackers to execute arbitrary code via a crafted RAW file, as demonstrated using a KDC file with a certain size.    7.5  High  2017-01-18  2014-04-25  View
49379  CVE-2009-2117  uye_paneli.php in phPortal 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the kulladi cookie to a valid username.    7.5  High  2017-01-07  2009-06-24  View
50147  CVE-2009-2926  Multiple SQL injection vulnerabilities in PHP Competition System BETA 0.84 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) day parameter to show_matchs.php and (2) pageno parameter to persons.php.    7.5  High  2017-01-07  2009-08-21  View
51171  CVE-2009-4018  The proc_open function in ext/standard/proc_open.c in PHP before 5.2.11 and 5.3.x before 5.3.1 does not enforce the (1) safe_mode_allowed_env_vars and (2) safe_mode_protected_env_vars directives, which allows context-dependent attackers to execute programs with an arbitrary environment via the env parameter, as demonstrated by a crafted value of the LD_LIBRARY_PATH environment variable.    7.5  High  2017-01-07  2011-07-18  View
51427  CVE-2009-4304  Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.    7.5  High  2017-01-07  2009-12-17  View

Page 15400 of 17672, showing 5 records out of 88360 total, starting on record 76996, ending on 77000

Actions