NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47803  CVE-2009-0471  Cross-site request forgery (CSRF) vulnerability in the HTTP server in Cisco IOS 12.4(23) allows remote attackers to execute arbitrary commands, as demonstrated by executing the hostname command with a level/15/configure/-/hostname request.    6.8  Medium  2017-01-07  2009-02-12  View
4047  CVE-2008-4191  extract-table.pl in Emacspeak 26 and 28 allows local users to overwrite arbitrary files via a symlink attack on the extract-table.csv temporary file.    6.6  Medium  2017-01-03  2009-02-12  View
5840  CVE-2008-6109  Robin Rawson-Tetley Animal Shelter Manager (ASM) before 2.2.2 does not properly enforce the privileges of user accounts, which allows local users to bypass intended access restrictions by (1) opening unspecified screens, related to the "double click selector bug"; or modifying a (2) animal, (3) owner, (4) lost/found, (5) diary note, (6) owner donation, or (7) waiting list record, related to "change permissions" and the "new UI."    4.6  Medium  2017-01-03  2009-02-12  View
5844  CVE-2008-6113  Cross-site scripting (XSS) vulnerability in SemanticScuttle before 0.90 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to the (1) username and (2) profile page.    4.3  Medium  2017-01-03  2009-02-12  View
47830  CVE-2009-0498  Virtual GuestBook (vgbook) 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to guestbook.mdb.    Medium  2017-01-07  2009-02-12  View

Page 2755 of 17672, showing 5 records out of 88360 total, starting on record 13771, ending on 13775

Actions