NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48918 | CVE-2009-1649 | Directory traversal vulnerability in arch.php in beLive 0.2.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the arch parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-05-18 | View | |
49174 | CVE-2009-1909 | SQL injection vulnerability in Skip 1.0.2 and earlier, and 1.1RC2 and earlier 1.1RC versions, allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-06-05 | View | |
49430 | CVE-2009-2168 | cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and earlier sends a redirect to the web browser but does not exit when the supplied credentials are incorrect, which allows remote attackers to bypass authentication by providing arbitrary username and password parameters. | 2 | 7.5 | High | 2017-01-07 | 2009-06-23 | View | |
49686 | CVE-2009-2441 | Cross-site scripting (XSS) vulnerability in ogp_show.php in Online Guestbook Pro 5.1 allows remote attackers to inject arbitrary web script or HTML via the entry parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-13 | View | |
49942 | CVE-2009-2701 | Unspecified vulnerability in the Zope Enterprise Objects (ZEO) storage-server functionality in Zope Object Database (ZODB) 3.8 before 3.8.3 and 3.9.x before 3.9.0c2, when certain ZEO database sharing and blob support are enabled, allows remote authenticated users to read or delete arbitrary files via unknown vectors. | 2 | 6 | Medium | 2017-01-07 | 2009-09-09 | View |
Page 1549 of 17672, showing 5 records out of 88360 total, starting on record 7741, ending on 7745