NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47867  CVE-2009-0535  Directory traversal vulnerability in export.php in Thyme 1.3 and earlier, when register_globals is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the export_to parameter.    7.5  High  2017-01-07  2009-02-12  View
48123  CVE-2009-0806  Unspecified vulnerability in OpenGoo before 1.2.1 allows remote authenticated users to modify their own permissions via unknown attack vectors.    6.5  Medium  2017-01-07  2009-03-05  View
48379  CVE-2009-1069  Multiple cross-site scripting (XSS) vulnerabilities in the node edit form feature in Drupal Content Construction Kit (CCK) 6.x before 6.x-2.2, a module for Drupal, allow remote attackers to inject arbitrary web script or HTML via the (1) titles of candidate referenced nodes in the Node reference sub-module and the (2) names of candidate referenced users in the User reference sub-module.    4.3  Medium  2017-01-07  2009-03-26  View
48635  CVE-2009-1349  Cross-site scripting (XSS) vulnerability in C2Net Stronghold 2.3 allows remote attackers to inject arbitrary web script or HTML via the URI.    4.3  Medium  2017-01-07  2009-04-21  View
48891  CVE-2009-1622  SQL injection vulnerability in user.php in EcShop 2.5.0 allows remote attackers to execute arbitrary SQL commands via the order_sn parameter in an order_query action.    7.5  High  2017-01-07  2009-05-13  View

Page 17389 of 17672, showing 5 records out of 88360 total, starting on record 86941, ending on 86945

Actions