NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
47858 | CVE-2009-0526 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in AdaptCMS Lite 1.4 allow remote attackers to inject arbitrary web script or HTML via the (1) url and (2) acuparam parameters, and (3) the URI. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-12 | View | |
48626 | CVE-2009-1339 | Cross-site request forgery (CSRF) vulnerability in TWiki before 4.3.1 allows remote authenticated users to hijack the authentication of arbitrary users for requests that update pages, as demonstrated by a URL for a save script in the SRC attribute of an IMG element, a related issue to CVE-2009-1434. | 2 | 6 | Medium | 2017-01-07 | 2009-05-14 | View | |
48882 | CVE-2009-1613 | Multiple SQL injection vulnerabilities in leap.php in Leap CMS 0.1.4, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) searchterm or (2) email parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-13 | View | |
49138 | CVE-2009-1873 | Directory traversal vulnerability in logging/logviewer.jsp in the Management Console in Adobe JRun Application Server 4 Updater 7 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the logfile parameter. | 2 | 4 | Medium | 2017-01-07 | 2009-08-26 | View | |
49394 | CVE-2009-2132 | Directory traversal vulnerability in global.php in 4images before 1.7.7, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the l parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-25 | View |
Page 17196 of 17672, showing 5 records out of 88360 total, starting on record 85976, ending on 85980