NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46924  CVE-2012-5908  Cross-site scripting (XSS) vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to inject arbitrary web script or HTML via the conditions[usergroup][] parameter in a search action to admin/index.php.    4.3  Medium  2017-01-19  2012-11-19  View
47180  CVE-2012-6499  Open redirect vulnerability in age-verification.php in the Age Verification plugin 0.4 and earlier for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_to parameter.    5.8  Medium  2017-01-19  2013-01-14  View
47692  CVE-2009-0360  Russ Allbery pam-krb5 before 3.13, when linked against MIT Kerberos, does not properly initialize the Kerberos libraries for setuid use, which allows local users to gain privileges by pointing an environment variable to a modified Kerberos configuration file, and then launching a PAM-based setuid application.    6.2  Medium  2017-01-07  2011-03-07  View
48716  CVE-2009-1440  Incomplete blacklist vulnerability in DownloadListCtrl.cpp in amule 2.2.4 allows remote attackers to conduct argument injection attacks into a command for mplayer via a crafted filename.    6.8  Medium  2017-01-07  2009-06-25  View
49228  CVE-2009-1966  Unspecified vulnerability in the Config Management component in (1) Oracle Database 11.1.0.7 and (2) Oracle Enterprise Manager 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-1967.    5.5  Medium  2017-01-07  2016-11-28  View

Page 2753 of 17672, showing 5 records out of 88360 total, starting on record 13761, ending on 13765

Actions