NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 65779 | CVE-2006-7236 | The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assisted attackers to execute arbitrary code or have unspecified other impact via escape sequences. | 2 | 9.3 | High | 2016-12-20 | 2009-02-26 | View | |
| 2300 | CVE-2008-2381 | SQL injection vulnerability in the create function in common/include/GroupJoinRequest.class in GForge 4.5 and 4.6 allows remote attackers to execute arbitrary SQL commands via the comments variable. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
| 4136 | CVE-2008-4308 | The doRead method in Apache Tomcat 4.1.32 through 4.1.34 and 5.5.10 through 5.5.20 does not return a -1 to indicate when a certain error condition has occurred, which can cause Tomcat to send POST content from one request to a different request. | 2 | 2.6 | Low | 2017-01-03 | 2009-02-27 | View | |
| 47949 | CVE-2009-0620 | Cisco ACE Application Control Engine Module for Catalyst 6500 Switches and 7600 Routers before A2(1.1) uses default (1) usernames and (2) passwords for (a) the administrator and (b) web management, which makes it easier for remote attackers to perform configuration changes or obtain operating-system access. | 2 | 10 | High | 2017-01-07 | 2009-02-27 | View | |
| 47950 | CVE-2009-0621 | Cisco ACE 4710 Application Control Engine Appliance before A1(8a) uses default (1) usernames and (2) passwords for (a) the administrator, (b) web management, and (c) device management, which makes it easier for remote attackers to perform configuration changes to the Device Manager and other components, or obtain operating-system access. | 2 | 10 | High | 2017-01-07 | 2009-02-27 | View |
Page 2801 of 17672, showing 5 records out of 88360 total, starting on record 14001, ending on 14005