NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48890 | CVE-2009-1621 | Directory traversal vulnerability in index.php in OpenCart 1.1.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the route parameter. | 2 | 5 | Medium | 2017-01-07 | 2014-06-04 | View | |
49146 | CVE-2009-1881 | Cross-site scripting (XSS) vulnerability in MT312 IMG-BBS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to model.php with a timestamp before 20090521. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-09 | View | |
49402 | CVE-2009-2140 | Multiple heap-based buffer overflows in cppcanvas/source/mtfrenderer/emfplus.cxx in Go-oo 2.x and 3.x before 3.0.1, previously named ooo-build and related to OpenOffice.org (OOo), allow remote attackers to execute arbitrary code via a crafted EMF+ file, a similar issue to CVE-2008-2238. | 2 | 9.3 | High | 2017-01-07 | 2010-05-29 | View | |
49658 | CVE-2009-2411 | Multiple integer overflows in the libsvn_delta library in Subversion before 1.5.7, and 1.6.x before 1.6.4, allow remote authenticated users and remote Subversion servers to execute arbitrary code via an svndiff stream with large windows that trigger a heap-based buffer overflow, a related issue to CVE-2009-2412. | 2 | 8.5 | High | 2017-01-07 | 2010-08-21 | View | |
49914 | CVE-2009-2673 | The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unspecified vectors, related to a declaration that lacks the final keyword. | 2 | 7.5 | High | 2017-01-07 | 2012-10-22 | View |
Page 16971 of 17672, showing 5 records out of 88360 total, starting on record 84851, ending on 84855