NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
49906 | CVE-2009-2665 | The nsDocument::SetScriptGlobalObject function in content/base/src/nsDocument.cpp in Mozilla Firefox 3.5.x before 3.5.2, when certain add-ons are enabled, does not properly handle a Link HTTP header, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted web page, related to an incorrect security wrapper. | 2 | 10 | High | 2017-01-07 | 2009-09-04 | View | |
50162 | CVE-2009-2943 | The postgresql-ocaml bindings 1.5.4, 1.7.0, and 1.12.1 for PostgreSQL libpq do not properly support the PQescapeStringConn function, which might allow remote attackers to leverage escaping issues involving multibyte character encodings. | 2 | 7.5 | High | 2017-01-07 | 2009-10-23 | View | |
50418 | CVE-2009-3213 | Stack-based buffer overflow in broid 1.0 Beta 3a allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .mp3 file. | 2 | 9.3 | High | 2017-01-07 | 2009-09-17 | View | |
50674 | CVE-2009-3473 | IBM DB2 9.1 before FP8 does not require the SETSESSIONUSER privilege for the SET SESSION AUTHORIZATION statement, which has unspecified impact and remote attack vectors. | 2 | 10 | High | 2017-01-07 | 2013-09-11 | View | |
50930 | CVE-2009-3750 | SQL injection vulnerability in read.php in ToyLog 0.1 allows remote attackers to execute arbitrary SQL commands via the idm parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-10-23 | View |
Page 16968 of 17672, showing 5 records out of 88360 total, starting on record 84836, ending on 84840