NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 51238 | CVE-2009-4088 | Multiple directory traversal vulnerabilities in telepark.wiki 2.4.23 and earlier allow remote attackers to read arbitrary files via directory traversal sequences in the css parameter to (1) getjs.php and (2) getcsslocal.php; and include and execute arbitrary local files via the (3) group parameter to upload.php. | 2 | 6.8 | Medium | 2017-01-07 | 2010-03-31 | View | |
| 51494 | CVE-2009-4371 | Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in Drupal Core 6.14, and possibly other versions including 6.15, allows remote authenticated users with "administer languages" permissions to inject arbitrary web script or HTML via the (1) Language name in English or (2) Native language name fields in the Custom language form. | 2 | 3.5 | Low | 2017-01-07 | 2009-12-22 | View | |
| 51750 | CVE-2009-4633 | vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that modifies a loop counter and triggers a heap-based buffer overflow. | 2 | 10 | High | 2017-01-07 | 2011-10-25 | View | |
| 52006 | CVE-2009-4889 | SQL injection vulnerability in books.php in the Book Panel (book_panel) module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the bookid parameter. | 2 | 7.5 | High | 2017-01-07 | 2010-06-11 | View | |
| 52262 | CVE-2007-0026 | The OLE Dialog component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 allows user-assisted remote attackers to execute arbitrary code via an RTF file with a malformed OLE object that triggers memory corruption. | 2 | 7.6 | High | 2017-01-07 | 2011-03-07 | View |
Page 2636 of 17672, showing 5 records out of 88360 total, starting on record 13176, ending on 13180