NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
47581 | CVE-2009-0247 | The server for 53KF Web IM 2009 Home, Professional, and Enterprise editions relies on client-side protection mechanisms against cross-site scripting (XSS), which allows remote attackers to conduct XSS attacks by using a modified client to send a crafted IM message, related to the msg variable. | 2 | 4.3 | Medium | 2017-01-07 | 2009-01-22 | View | |
48605 | CVE-2009-1318 | Directory traversal vulnerability in index.php in Jamroom 3.1.2, 3.2.3 through 3.2.6, 4.0.2, and possibly other versions before 3.4.0 allows remote attackers to include arbitrary files via directory traversal sequences in the t parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2009-04-17 | View | |
49885 | CVE-2009-2644 | Race condition in the Solaris Auditing subsystem in Sun Solaris 9 and 10 and OpenSolaris before snv_121, when extended file attributes are used, allows local users to cause a denial of service (panic) via vectors related to "pathnames for invalid fds." | 2 | 4.9 | Medium | 2017-01-07 | 2010-08-21 | View | |
50141 | CVE-2009-2920 | Multiple cross-site scripting (XSS) vulnerabilities in Elvin 1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) component and (2) priority parameters to buglist.php; and the (3) Username (4) E-mail, (5) Pass, and (6) Confirm pass fields to createaccount.php. | 2 | 4.3 | Medium | 2017-01-07 | 2009-08-27 | View | |
50397 | CVE-2009-3192 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in LinkorCMS 1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the searchstr parameter in a search action; or the (2) nikname, (3) realname, (4) homepage, or (5) city parameter in a registration action. | 2 | 4.3 | Medium | 2017-01-07 | 2013-09-13 | View |
Page 16458 of 17672, showing 5 records out of 88360 total, starting on record 82286, ending on 82290