NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50427 | CVE-2009-3222 | Cross-site scripting (XSS) vulnerability in index.php in FreeWebScriptz Honest Traffic (FWSHT) 1.x allows remote attackers to inject arbitrary web script or HTML via the msg parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-09-17 | View | |
50683 | CVE-2009-3482 | TrustPort Antivirus before 2.8.0.2266 and PC Security before 2.0.0.1291 use weak permissions (Everyone: Full Control) for files under %PROGRAMFILES%, which allows local users to gain privileges by replacing executables with Trojan horse programs. | 2 | 6.8 | Medium | 2017-01-07 | 2009-10-01 | View | |
50939 | CVE-2009-3759 | Multiple cross-site request forgery (CSRF) vulnerabilities in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allow remote attackers to hijack the authentication of administrators for (1) requests that change the password via the username parameter to config/changepw.php or (2) stop a virtual machine via the stop_vmname parameter to hardstopvm.php. NOTE: some of these details are obtained from third party information. | 2 | 6 | Medium | 2017-01-07 | 2009-10-23 | View | |
51195 | CVE-2009-4043 | Cross-site scripting (XSS) vulnerability in the AddToAny module 5.x before 5.x-2.4 and 6.x before 6.x-2.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via a node title. | 2 | 4.3 | Medium | 2017-01-07 | 2009-11-23 | View | |
51451 | CVE-2009-4328 | Unspecified vulnerability in the DRDA Services component in IBM DB2 9.5 before FP5 allows remote authenticated users to cause a denial of service (server trap) by calling a SQL stored procedure in unknown circumstances. | 2 | 4 | Medium | 2017-01-07 | 2010-06-29 | View |
Page 17391 of 17672, showing 5 records out of 88360 total, starting on record 86951, ending on 86955