NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51423 | CVE-2009-4300 | Multiple unspecified authentication plugins in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 store the MD5 hashes for passwords in the user table, even when the cached hashes are not used by the plugin, which might make it easier for attackers to obtain credentials via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-12-16 | View | |
51679 | CVE-2009-4562 | Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the from parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2010-01-05 | View | |
51935 | CVE-2009-4818 | Unrestricted file upload vulnerability in upload.php in PHPSimplicity Simplicity oF Upload 1.3.2 allows remote attackers to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by .php.gif. | 2 | 6.8 | Medium | 2017-01-07 | 2010-04-28 | View | |
52191 | CVE-2009-5090 | SQL injection vulnerability in editcomments.php in Bloggeruniverse Beta 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter and possibly other unspecified vectors. | 2 | 6.8 | Medium | 2017-01-07 | 2011-09-14 | View | |
52959 | CVE-2007-0738 | The Login Window in Apple Mac OS X 10.4 through 10.4.9 does not display the screen saver authentication dialog in certain circumstances when waking from sleep, even though the "require a password to wake the computer from sleep" option is enabled, which allows local users to bypass authentication controls. | 2 | 4.6 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 16527 of 17672, showing 5 records out of 88360 total, starting on record 82631, ending on 82635