NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40675 | CVE-2013-5359 | Stack-based buffer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 might allow remote attackers to execute arbitrary code via a crafted RAW file, as demonstrated using a KDC file with a certain size. | 2 | 7.5 | High | 2017-01-18 | 2014-04-25 | View | |
| 49379 | CVE-2009-2117 | uye_paneli.php in phPortal 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the kulladi cookie to a valid username. | 2 | 7.5 | High | 2017-01-07 | 2009-06-24 | View | |
| 50147 | CVE-2009-2926 | Multiple SQL injection vulnerabilities in PHP Competition System BETA 0.84 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) day parameter to show_matchs.php and (2) pageno parameter to persons.php. | 2 | 7.5 | High | 2017-01-07 | 2009-08-21 | View | |
| 51171 | CVE-2009-4018 | The proc_open function in ext/standard/proc_open.c in PHP before 5.2.11 and 5.3.x before 5.3.1 does not enforce the (1) safe_mode_allowed_env_vars and (2) safe_mode_protected_env_vars directives, which allows context-dependent attackers to execute programs with an arbitrary environment via the env parameter, as demonstrated by a crafted value of the LD_LIBRARY_PATH environment variable. | 2 | 7.5 | High | 2017-01-07 | 2011-07-18 | View | |
| 51427 | CVE-2009-4304 | Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks. | 2 | 7.5 | High | 2017-01-07 | 2009-12-17 | View |
Page 15400 of 17672, showing 5 records out of 88360 total, starting on record 76996, ending on 77000