NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50469  CVE-2009-3264  The getSVGDocument method in Google Chrome before 3.0.195.21 omits an unspecified "access check," which allows remote web servers to bypass the Same Origin Policy and conduct cross-site scripting attacks via unknown vectors, related to a user"s visit to a different web server that hosts an SVG document.    4.3  Medium  2017-01-07  2009-10-01  View
50725  CVE-2009-3524  Unspecified vulnerability in ashWsFtr.dll in avast! Home and Professional for Windows before 4.8.1356 has unknown impact and local attack vectors.    7.2  High  2017-01-07  2010-08-21  View
50981  CVE-2009-3813  Multiple SQL injection vulnerabilities in RunCMS 2M1 allow remote authenticated users to execute arbitrary SQL commands via the (1) forum parameter to modules/forum/post.php and possibly (2) forum_id variable to modules/forum/class/class.permissions.php.    6.5  Medium  2017-01-07  2009-10-28  View
51237  CVE-2009-4087  Cross-site scripting (XSS) vulnerability in index.php in telepark.wiki 2.4.23 and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.    4.3  Medium  2017-01-07  2011-12-12  View
51493  CVE-2009-4370  Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in Drupal Core 6.x before 6.15 allows remote authenticated users with permissions to create new menus to inject arbitrary web script or HTML via a menu description, which is not properly handled in the menu administration overview.    3.5  Low  2017-01-07  2009-12-22  View

Page 2275 of 17672, showing 5 records out of 88360 total, starting on record 11371, ending on 11375

Actions