NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50171 | CVE-2009-2952 | Unspecified vulnerability in the pollwakeup function in Sun Solaris 10, and OpenSolaris before snv_51, allows local users to cause a denial of service (panic) via unknown vectors. | 2 | 4.9 | Medium | 2017-01-07 | 2010-08-21 | View | |
50427 | CVE-2009-3222 | Cross-site scripting (XSS) vulnerability in index.php in FreeWebScriptz Honest Traffic (FWSHT) 1.x allows remote attackers to inject arbitrary web script or HTML via the msg parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-09-17 | View | |
50683 | CVE-2009-3482 | TrustPort Antivirus before 2.8.0.2266 and PC Security before 2.0.0.1291 use weak permissions (Everyone: Full Control) for files under %PROGRAMFILES%, which allows local users to gain privileges by replacing executables with Trojan horse programs. | 2 | 6.8 | Medium | 2017-01-07 | 2009-10-01 | View | |
50939 | CVE-2009-3759 | Multiple cross-site request forgery (CSRF) vulnerabilities in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allow remote attackers to hijack the authentication of administrators for (1) requests that change the password via the username parameter to config/changepw.php or (2) stop a virtual machine via the stop_vmname parameter to hardstopvm.php. NOTE: some of these details are obtained from third party information. | 2 | 6 | Medium | 2017-01-07 | 2009-10-23 | View | |
51195 | CVE-2009-4043 | Cross-site scripting (XSS) vulnerability in the AddToAny module 5.x before 5.x-2.4 and 6.x before 6.x-2.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via a node title. | 2 | 4.3 | Medium | 2017-01-07 | 2009-11-23 | View |
Page 17526 of 17672, showing 5 records out of 88360 total, starting on record 87626, ending on 87630