NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
47619 | CVE-2009-0285 | Cross-site scripting (XSS) vulnerability in error.asp in BBSXP 5.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the message parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-01-27 | View | |
47875 | CVE-2009-0544 | Buffer overflow in the PyCrypto ARC2 module 2.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large ARC2 key length. | 2 | 10 | High | 2017-01-07 | 2009-05-15 | View | |
48131 | CVE-2009-0814 | Cross-site scripting (XSS) vulnerability in Widgets.aspx in Blogsa 1.0 Beta 3 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchText parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-05 | View | |
48387 | CVE-2009-1077 | The Change My Password implementation in the admin interface in Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not enforce the RequiresChallenge property setting, which allows remote authenticated users to change the passwords of other users, as demonstrated by changing the administrator"s password. | 2 | 6.5 | Medium | 2017-01-07 | 2009-10-06 | View | |
48643 | CVE-2009-1357 | CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2 through 6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the HELP_PAGE parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2010-06-02 | View |
Page 228 of 17672, showing 5 records out of 88360 total, starting on record 1136, ending on 1140