NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47858  CVE-2009-0526  Multiple cross-site scripting (XSS) vulnerabilities in index.php in AdaptCMS Lite 1.4 allow remote attackers to inject arbitrary web script or HTML via the (1) url and (2) acuparam parameters, and (3) the URI.    4.3  Medium  2017-01-07  2009-02-12  View
48626  CVE-2009-1339  Cross-site request forgery (CSRF) vulnerability in TWiki before 4.3.1 allows remote authenticated users to hijack the authentication of arbitrary users for requests that update pages, as demonstrated by a URL for a save script in the SRC attribute of an IMG element, a related issue to CVE-2009-1434.    Medium  2017-01-07  2009-05-14  View
48882  CVE-2009-1613  Multiple SQL injection vulnerabilities in leap.php in Leap CMS 0.1.4, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) searchterm or (2) email parameter.    6.8  Medium  2017-01-07  2009-05-13  View
49138  CVE-2009-1873  Directory traversal vulnerability in logging/logviewer.jsp in the Management Console in Adobe JRun Application Server 4 Updater 7 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the logfile parameter.    Medium  2017-01-07  2009-08-26  View
49394  CVE-2009-2132  Directory traversal vulnerability in global.php in 4images before 1.7.7, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the l parameter.    6.8  Medium  2017-01-07  2009-06-25  View

Page 17196 of 17672, showing 5 records out of 88360 total, starting on record 85976, ending on 85980

Actions