NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51444  CVE-2009-4321  extras/curltest.php in Zen Cart 1.3.8 and 1.3.8a, and possibly other versions, allows remote attackers to read arbitrary files via a file:// URI. NOTE: some of these details are obtained from third party information.    Medium  2017-01-07  2009-12-15  View
51700  CVE-2009-4583  SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a grouplist action to index.php.    7.5  High  2017-01-07  2010-01-07  View
51956  CVE-2009-4839  Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and earlier, allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) admin/base_roleadmin.php, (2) admin/base_useradmin.php, (3) base_conf_contents.php, (4) base_qry_sqlcalls.php, and (5) base_ag_main.php.    4.3  Medium  2017-01-07  2012-07-03  View
52212  CVE-2009-5116  McAfee LinuxShield 1.5.1 and earlier does not properly implement client authentication, which allows remote authenticated users to obtain Admin access to the statistics server by leveraging a client account.    6.5  Medium  2017-01-07  2012-08-22  View
52468  CVE-2007-0239  OpenOffice.org (OOo) Office Suite allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a prepared link in a crafted document.    9.3  High  2017-01-07  2011-03-07  View

Page 16999 of 17672, showing 5 records out of 88360 total, starting on record 84991, ending on 84995

Actions