NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48325 | CVE-2009-1015 | Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.05, and 10.2.04 allows remote authenticated users to affect integrity via unknown vectors. | 2 | 4 | Medium | 2017-01-07 | 2012-10-22 | View | |
| 48581 | CVE-2009-1294 | Multiple cross-site scripting (XSS) vulnerabilities in web/guest/home in the Liferay 4.3.0 portal in Novell Teaming 1.0 through SP3 (1.0.3) allow remote attackers to inject arbitrary web script or HTML via the (1) p_p_state or (2) p_p_mode parameters. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-23 | View | |
| 49093 | CVE-2009-1827 | The SVG component in Mozilla Firefox 3.0.4 allows remote attackers to cause a denial of service (application hang) via a large value in the r (aka Radius) attribute of a circle element, related to an "unclamped loop." | 2 | 5 | Medium | 2017-01-07 | 2009-06-01 | View | |
| 49605 | CVE-2009-2358 | TekRADIUS 3.0 uses BUILTINUsers:R permissions for the TekRADIUS.ini file, which allows local users to obtain obfuscated database credentials by reading this file. | 2 | 4.6 | Medium | 2017-01-07 | 2009-07-08 | View | |
| 50373 | CVE-2009-3168 | Mevin Productions Basic PHP Events Lister 2.0 does not properly restrict access to (1) admin/reset.php and (2) admin/user_add.php, which allows remote authenticated users to reset administrative passwords or add administrators via a direct request. | 2 | 6.5 | Medium | 2017-01-07 | 2009-09-14 | View |
Page 15607 of 17672, showing 5 records out of 88360 total, starting on record 78031, ending on 78035