NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50938 | CVE-2009-3758 | SQL injection vulnerability in login.php in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2009-10-23 | View | |
51194 | CVE-2009-4042 | Cross-site scripting (XSS) vulnerability in the RootCandy theme 6.x before 6.x-1.5 for Drupal allows remote attackers to inject arbitrary web script or HTML via the URI. | 2 | 4.3 | Medium | 2017-01-07 | 2009-11-23 | View | |
51450 | CVE-2009-4327 | The Common Code Infrastructure component in IBM DB2 9.5 before FP5 and 9.7 before FP1 does not properly validate the size of a memory pool during a creation attempt, which allows attackers to cause a denial of service (memory consumption) via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2010-06-29 | View | |
51706 | CVE-2009-4589 | Cross-site scripting (XSS) vulnerability in the Special:Block implementation in the getContribsLink function in SpecialBlockip.php in MediaWiki 1.14.0 and 1.15.0 allows remote attackers to inject arbitrary web script or HTML via the ip parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2010-01-08 | View | |
51962 | CVE-2009-4845 | The configuration page in ToutVirtual VirtualIQ Pro 3.2 build 7882 contains cleartext SSH credentials, which allows remote attackers to obtain sensitive information by reading the username and password fields. | 2 | 5 | Medium | 2017-01-07 | 2010-05-21 | View |
Page 17362 of 17672, showing 5 records out of 88360 total, starting on record 86806, ending on 86810