NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50152  CVE-2009-2931  Directory traversal vulnerability in p.php in SlideShowPro Director 1.1 through 1.3.8 allows remote attackers to read arbitrary files via directory traversal sequences in the a parameter.    7.8  High  2017-01-07  2009-08-25  View
50408  CVE-2009-3203  SQL injection vulnerability in store.php in AJ Auction Pro OOPD 2.x allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2009-09-22  View
50664  CVE-2009-3463  Array index error in Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site. NOTE: some of these details are obtained from third party information.    9.3  High  2017-01-07  2010-08-21  View
50920  CVE-2009-3737  The Oracle Siebel Option Pack for IE ActiveX control does not properly initialize memory that is used by the NewBusObj method, which allows remote attackers to execute arbitrary code via a crafted HTML document.    9.3  High  2017-01-07  2011-07-26  View
51176  CVE-2009-4023  Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.    7.5  High  2017-01-07  2010-12-07  View

Page 16697 of 17672, showing 5 records out of 88360 total, starting on record 83481, ending on 83485

Actions