NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
47610 | CVE-2009-0276 | Cross-domain vulnerability in the V8 JavaScript engine in Google Chrome before 1.0.154.46 allows remote attackers to bypass the Same Origin Policy via a crafted script that accesses another frame and reads its full URL and possibly other sensitive information, or modifies the URL of this frame. | 2 | 5 | Medium | 2017-01-07 | 2009-02-04 | View | |
47866 | CVE-2009-0534 | SQL injection vulnerability in FlexCMS allows remote attackers to execute arbitrary SQL commands via the catId parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-02-12 | View | |
48122 | CVE-2009-0805 | Cross-site scripting (XSS) vulnerability in piCal 0.91h and earlier, a module for XOOPS, allows remote attackers to inject arbitrary web script or HTML via the event_id parameter in index.php. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-05 | View | |
48378 | CVE-2009-1068 | Stack-based buffer overflow in BS.Player (bsplayer) 2.32 Build 975 Free and 2.34 Build 980 PRO and earlier allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long hostname in a .bsl playlist file. | 2 | 9.3 | High | 2017-01-07 | 2009-04-03 | View | |
48634 | CVE-2009-1348 | The AV engine before DAT 5600 in McAfee VirusScan, Total Protection, Internet Security, SecurityShield for Microsoft ISA Server, Security for Microsoft Sharepoint, Security for Email Servers, Email Gateway, and Active Virus Defense allows remote attackers to bypass virus detection via (1) an invalid Headflags field in a malformed RAR archive, (2) an invalid Packsize field in a malformed RAR archive, or (3) an invalid Filelength field in a malformed ZIP archive. | 2 | 7.6 | High | 2017-01-07 | 2009-05-19 | View |
Page 16970 of 17672, showing 5 records out of 88360 total, starting on record 84846, ending on 84850