NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51444 | CVE-2009-4321 | extras/curltest.php in Zen Cart 1.3.8 and 1.3.8a, and possibly other versions, allows remote attackers to read arbitrary files via a file:// URI. NOTE: some of these details are obtained from third party information. | 2 | 5 | Medium | 2017-01-07 | 2009-12-15 | View | |
51956 | CVE-2009-4839 | Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and earlier, allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) admin/base_roleadmin.php, (2) admin/base_useradmin.php, (3) base_conf_contents.php, (4) base_qry_sqlcalls.php, and (5) base_ag_main.php. | 2 | 4.3 | Medium | 2017-01-07 | 2012-07-03 | View | |
52212 | CVE-2009-5116 | McAfee LinuxShield 1.5.1 and earlier does not properly implement client authentication, which allows remote authenticated users to obtain Admin access to the statistics server by leveraging a client account. | 2 | 6.5 | Medium | 2017-01-07 | 2012-08-22 | View | |
53236 | CVE-2007-1028 | Cross-site scripting (XSS) vulnerability in the Barry Jaspan Image Pager 4.7.x-1.x-dev and 5.x-1.x-dev before 2007-02-08 module for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to HTML entities and the IMG element. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
53748 | CVE-2007-1564 | The FTP protocol implementation in Konqueror 3.5.5 allows remote servers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 17275 of 17672, showing 5 records out of 88360 total, starting on record 86371, ending on 86375