NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47704 | CVE-2009-0372 | Unrestricted file upload vulnerability in index.php in Miltenovik Manojlo MemHT Portal 4.0.1 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension and an image content type via a users editProfile action, then accessing this file via a direct request to the file in images/avatar/uploaded/. | 2 | 6.5 | Medium | 2017-01-07 | 2009-02-02 | View | |
| 47706 | CVE-2009-0374 | ** DISPUTED ** Google Chrome 1.0.154.43 allows remote attackers to trick a user into visiting an arbitrary URL via an onclick action that moves a crafted element to the current mouse position, related to a "Clickjacking" vulnerability. NOTE: a third party disputes the relevance of this issue, stating that "every sufficiently featured browser is and likely will remain susceptible to the behavior known as clickjacking," and adding that the exploit code "is not a valid demonstration of the issue." | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-02 | View | |
| 47709 | CVE-2009-0377 | SQL injection vulnerability in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mpid parameter in a sign action to index.php, a different vector than CVE-2008-3132. | 2 | 7.5 | High | 2017-01-07 | 2009-02-02 | View | |
| 47710 | CVE-2009-0378 | Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the pet parameter in a sign action. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-02 | View | |
| 47711 | CVE-2009-0379 | SQL injection vulnerability in the Prince Clan Chess Club (com_pcchess) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the game_id parameter in a showgame action to index.php, a different vector than CVE-2008-0761. | 2 | 7.5 | High | 2017-01-07 | 2009-02-02 | View |
Page 2715 of 17672, showing 5 records out of 88360 total, starting on record 13571, ending on 13575