NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51706 | CVE-2009-4589 | Cross-site scripting (XSS) vulnerability in the Special:Block implementation in the getContribsLink function in SpecialBlockip.php in MediaWiki 1.14.0 and 1.15.0 allows remote attackers to inject arbitrary web script or HTML via the ip parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2010-01-08 | View | |
51962 | CVE-2009-4845 | The configuration page in ToutVirtual VirtualIQ Pro 3.2 build 7882 contains cleartext SSH credentials, which allows remote attackers to obtain sensitive information by reading the username and password fields. | 2 | 5 | Medium | 2017-01-07 | 2010-05-21 | View | |
52218 | CVE-2009-5122 | The Personal Email Manager component in Websense Email Security before 7.2 allows remote attackers to obtain potentially sensitive information from the JBoss status page via an unspecified query. | 2 | 5 | Medium | 2017-01-07 | 2013-04-01 | View | |
52474 | CVE-2007-0246 | plugins/scmcvs/www/cvsweb.php in the CVSWeb CGI in GForge 4.5.16 before 20070524, aka gforge-plugin-scmcvs, allows remote attackers to execute arbitrary commands via shell metacharacters in the PATH_INFO. | 2 | 6.8 | Medium | 2017-01-07 | 2012-11-05 | View | |
52730 | CVE-2007-0506 | The project_issue_access function in the Project issue tracking 4.7.0 through 5.x before 20070123 module for Drupal allows remote authenticated users to bypass other access control modules and obtain attached files by guessing the filename, and obtain issue information via direct requests. | 2 | 6 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 17494 of 17672, showing 5 records out of 88360 total, starting on record 87466, ending on 87470