NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47670 | CVE-2009-0338 | Cross-site scripting (XSS) vulnerability in inc_webblogmanager.asp in DMXReady Blog Manager allows remote attackers to inject arbitrary web script or HTML via the CategoryID parameter in a refer action. | 2 | 4.3 | Medium | 2017-01-07 | 2009-01-29 | View | |
| 47926 | CVE-2009-0597 | SQL injection vulnerability in admin/index.php in w3b>cms (aka w3blabor CMS) before 3.4.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the benutzername parameter (aka Username field) in a login action. | 2 | 6.8 | Medium | 2017-01-07 | 2009-02-17 | View | |
| 48182 | CVE-2009-0867 | The HRM-S service in Fujitsu Enhanced Support Facility 3.0 and 3.0.1 allows remote attackers to obtain (1) hardware and (2) software information via unspecified requests in a client connection. | 2 | 5 | Medium | 2017-01-07 | 2009-03-11 | View | |
| 48694 | CVE-2009-1418 | Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 3.0.1.73 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2012-03-23 | View | |
| 48950 | CVE-2009-1681 | WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not prevent web sites from loading third-party content into a subframe, which allows remote attackers to bypass the Same Origin Policy and conduct "clickjacking" attacks via a crafted HTML document. | 2 | 4.3 | Medium | 2017-01-07 | 2011-02-17 | View |
Page 1969 of 17672, showing 5 records out of 88360 total, starting on record 9841, ending on 9845