NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
49897 | CVE-2009-2656 | Unspecified vulnerability in the com.android.phone process in Android 1.0, 1.1, and 1.5 allows remote attackers to cause a denial of service (network disconnection) via a crafted SMS message, as demonstrated by Collin Mulliner and Charlie Miller at Black Hat USA 2009. | 2 | 5 | Medium | 2017-01-07 | 2012-02-29 | View | |
50153 | CVE-2009-2932 | Cross-site scripting (XSS) vulnerability in uddiclient/process in the UDDI client in SAP NetWeaver Application Server (Java) 7.0 allows remote attackers to inject arbitrary web script or HTML via the TModel Key field. | 2 | 4.3 | Medium | 2017-01-07 | 2009-08-24 | View | |
50409 | CVE-2009-3204 | Multiple cross-site scripting (XSS) vulnerabilities in Stiva Forum 1.0 allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) demo.php and (2) forum.php, and the PATH_INFO to (3) include_forum.php. | 2 | 4.3 | Medium | 2017-01-07 | 2009-09-17 | View | |
51689 | CVE-2009-4572 | Cross-site request forgery (CSRF) vulnerability in PhpShop 0.8.1 allows remote attackers to hijack the authentication of arbitrary users for requests that invoke the cartAdd function in a shop/cart action to the default URI. | 2 | 6.8 | Medium | 2017-01-07 | 2010-01-06 | View | |
51945 | CVE-2009-4828 | Cross-site request forgery (CSRF) vulnerability in administration/admins.php in Ad Manager Pro (aka AdManagerPro) 3.0 allows remote attackers to hijack the authentication of administrators for requests that create new administrative users via an admin_created action. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-07 | 2010-05-24 | View |
Page 16881 of 17672, showing 5 records out of 88360 total, starting on record 84401, ending on 84405