NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51678  CVE-2009-4561  Multiple SQL injection vulnerabilities in Admin/index.php in WebLeague 2.2.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.    6.8  Medium  2017-01-07  2010-01-05  View
51934  CVE-2009-4817  Unrestricted file upload vulnerability in Element-IT Ultimate Uploader 1.3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/.    6.8  Medium  2017-01-07  2013-08-22  View
52190  CVE-2009-5089  Directory traversal vulnerability in index.php in IdeaCart 0.02 and 0.02a allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.    4.3  Medium  2017-01-07  2016-09-20  View
52446  CVE-2007-0217  The wininet.dll FTP client code in Microsoft Internet Explorer 5.01 and 6 might allow remote attackers to execute arbitrary code via an FTP server response of a specific length that causes a terminating null byte to be written outside of a buffer, which causes heap corruption.    10  High  2017-01-07  2011-03-07  View
52702  CVE-2007-0478  WebCore on Apple Mac OS X 10.3.9 and 10.4.10, as used in Safari, does not properly parse HTML comments in TITLE elements, which allows remote attackers to conduct cross-site scripting (XSS) attacks and bypass some XSS protection schemes by embedding certain HTML tags within an HTML comment.    4.3  Medium  2017-01-07  2011-03-07  View

Page 15662 of 17672, showing 5 records out of 88360 total, starting on record 78306, ending on 78310

Actions