NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51430 | CVE-2009-4307 | The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block with a large FLEX_BG group size (aka s_log_groups_per_flex value). | 2 | 7.1 | High | 2017-01-07 | 2012-03-19 | View | |
51686 | CVE-2009-4569 | SQL injection vulnerability in elkagroup Image Gallery allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI under news/. | 2 | 7.5 | High | 2017-01-07 | 2010-01-06 | View | |
52198 | CVE-2009-5097 | Palm Pre WebOS 1.1 and earlier processes JavaScript in email messages, which allows remote attackers to execute arbitrary JavaScript, as demonstrated by reading PalmDatabase.db3. | 2 | 7.1 | High | 2017-01-07 | 2011-09-14 | View | |
52710 | CVE-2007-0486 | ** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in Openads (aka phpAdsNew) 2.0.7 allow remote attackers to execute arbitrary PHP code via a URL in the (1) phpAds_geoPlugin parameter to libraries/lib-remotehost.inc, the (2) filename parameter to admin/report-index, or the (3) phpAds_config[my_footer] parameter to admin/lib-gui.inc. NOTE: the vendor has disputed this issue, stating that the relevant variables are used within function definitions. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
52966 | CVE-2007-0745 | The Apple Security Update 2007-004 uses an incorrect configuration file for FTPServer in Apple Mac OS X Server 10.4.9, which might allow remote authenticated users to access additional directories. | 2 | 7.1 | High | 2017-01-07 | 2008-09-05 | View |
Page 16642 of 17672, showing 5 records out of 88360 total, starting on record 83206, ending on 83210