NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49483 | CVE-2009-2221 | Cross-site scripting (XSS) vulnerability in PHP-I-BOARD 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-07 | View | |
| 50251 | CVE-2009-3035 | The web console in Symantec Altiris Notification Server 6.0.x before 6.0 SP3 R12 uses a hardcoded key that can decrypt SQL Server credentials and certain discovery credentials, and stores this key on the Notification Server machine, which allows local users to obtain sensitive information and possibly execute arbitrary code by decrypting and using these credentials. | 2 | 4.3 | Medium | 2017-01-07 | 2013-02-06 | View | |
| 50507 | CVE-2009-3303 | Cross-site scripting (XSS) vulnerability in www/help/tracker.php in GForge 4.5.14, 4.7 rc2, and 4.8.1 allows remote attackers to inject arbitrary web script or HTML via the helpname parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-11-24 | View | |
| 50763 | CVE-2009-3564 | puppetmasterd in puppet 0.24.6 does not reset supplementary groups when it switches to a different user, which might allow local users to access restricted files. | 2 | 4.7 | Medium | 2017-01-07 | 2009-10-07 | View | |
| 51275 | CVE-2009-4129 | Race condition in Mozilla Firefox allows remote attackers to produce a JavaScript message with a spoofed domain association by writing the message in between the document request and document load for a web page in a different domain. | 2 | 5.8 | Medium | 2017-01-07 | 2009-12-15 | View |
Page 2720 of 17672, showing 5 records out of 88360 total, starting on record 13596, ending on 13600