NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48664 | CVE-2009-1379 | Use-after-free vulnerability in the dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL 1.0.0 Beta 2 allows remote attackers to cause a denial of service (openssl s_client crash) and possibly have unspecified other impact via a DTLS packet, as demonstrated by a packet from a server that uses a crafted server certificate. | 2 | 5 | Medium | 2017-01-07 | 2013-01-22 | View | |
| 48920 | CVE-2009-1651 | SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to execute arbitrary SQL commands via the mid parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-05-23 | View | |
| 49176 | CVE-2009-1911 | Directory traversal vulnerability in .include/init.php (aka admin/_include/init.php) in QuiXplorer 2.3.2 and earlier, as used in TinyWebGallery (TWG) 1.7.6 and earlier, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter to admin/index.php. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-05 | View | |
| 49432 | CVE-2009-2170 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.0 before 1.0.12 and 1.1 before 1.1.5 allow remote attackers to inject arbitrary web script or HTML via unknown vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-24 | View | |
| 49688 | CVE-2009-2443 | Siteframe 3.2.3, and other 3.2.x versions, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-07 | 2009-07-13 | View |
Page 2035 of 17672, showing 5 records out of 88360 total, starting on record 10171, ending on 10175