NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49736  CVE-2009-2491  The utaudiod daemon in Sun Ray Server Software (SRSS) 4.0, when Solaris Trusted Extensions is enabled, allows local users to access the sessions of arbitrary users via unknown vectors related to "resource leaks."    4.4  Medium  2017-01-07  2009-08-12  View
50760  CVE-2009-3561  Directory traversal vulnerability in Xerver HTTP Server 4.32 allows remote attackers to read arbitrary files via a full pathname with a drive letter in the currentPath parameter in a chooseDirectory action.    Medium  2017-01-07  2009-10-06  View
51784  CVE-2009-4667  SQL injection vulnerability in form.php in WebMember 1.0 allows remote authenticated users to execute arbitrary SQL commands via the formID parameter.    6.5  Medium  2017-01-07  2010-03-05  View
52040  CVE-2009-4925  Multiple SQL injection vulnerabilities in Portale e-commerce Creasito (aka creasito e-commerce content manager) 1.3.16, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the username parameter to (1) admin/checkuser.php and (2) checkuser.php.    6.8  Medium  2017-01-07  2010-07-16  View
53576  CVE-2007-1392  Directory traversal vulnerability in down.php in netForo! 0.1g allows remote attackers to read arbitrary files via a .. (dot dot) in the file_to_download parameter.    Medium  2017-01-07  2011-03-07  View

Page 2620 of 17672, showing 5 records out of 88360 total, starting on record 13096, ending on 13100

Actions