NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 46924 | CVE-2012-5908 | Cross-site scripting (XSS) vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to inject arbitrary web script or HTML via the conditions[usergroup][] parameter in a search action to admin/index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2012-11-19 | View | |
| 47180 | CVE-2012-6499 | Open redirect vulnerability in age-verification.php in the Age Verification plugin 0.4 and earlier for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_to parameter. | 2 | 5.8 | Medium | 2017-01-19 | 2013-01-14 | View | |
| 47692 | CVE-2009-0360 | Russ Allbery pam-krb5 before 3.13, when linked against MIT Kerberos, does not properly initialize the Kerberos libraries for setuid use, which allows local users to gain privileges by pointing an environment variable to a modified Kerberos configuration file, and then launching a PAM-based setuid application. | 2 | 6.2 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 48716 | CVE-2009-1440 | Incomplete blacklist vulnerability in DownloadListCtrl.cpp in amule 2.2.4 allows remote attackers to conduct argument injection attacks into a command for mplayer via a crafted filename. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-25 | View | |
| 49228 | CVE-2009-1966 | Unspecified vulnerability in the Config Management component in (1) Oracle Database 11.1.0.7 and (2) Oracle Enterprise Manager 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-1967. | 2 | 5.5 | Medium | 2017-01-07 | 2016-11-28 | View |
Page 2753 of 17672, showing 5 records out of 88360 total, starting on record 13761, ending on 13765