NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48179  CVE-2009-0864  S-Cms 1.1 Stable allows remote attackers to bypass authentication and obtain administrative access via an OK value for the login cookie.    7.5  High  2017-01-07  2009-03-10  View
48435  CVE-2009-1138  The LDAP service in Active Directory on Microsoft Windows 2000 SP4 does not properly free memory for LDAP and LDAPS requests, which allows remote attackers to execute arbitrary code via a request that uses hexadecimal encoding, whose associated memory is not released, related to a "DN AttributeValue," aka "Active Directory Invalid Free Vulnerability." NOTE: this issue is probably a memory leak.    10  High  2017-01-07  2010-08-21  View
48947  CVE-2009-1678  Directory traversal vulnerability in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the version parameter to boards/boards_rss.php.    7.5  High  2017-01-07  2009-06-09  View
51251  CVE-2009-4101  infoRSS 1.1.4.2 and earlier extension for Firefox performs certain operations with chrome privileges, which allows remote attackers to execute arbitrary commands and perform cross-domain scripting attacks via the description tag of an RSS feed.    9.3  High  2017-01-07  2009-12-07  View
51763  CVE-2009-4646  Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated administrators to inject arbitrary shell commands by appending them to a request to update the SNMP public community string.    High  2017-01-07  2010-02-22  View

Page 1722 of 17672, showing 5 records out of 88360 total, starting on record 8606, ending on 8610

Actions