NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48137  CVE-2009-0820  Multiple eval injection vulnerabilities in phpScheduleIt before 1.2.11 allow remote attackers to execute arbitrary code via (1) the end_date parameter to reserve.php and (2) the start_date and end_date parameters to check.php. NOTE: the start_date/reserve.php vector is already covered by CVE-2008-6132.    7.5  High  2017-01-07  2009-03-05  View
48138  CVE-2009-0821  Mozilla Firefox 2.0.0.20 and earlier allows remote attackers to cause a denial of service (application crash) via nested calls to the window.print function, as demonstrated by a window.print(window.print()) in the onclick attribute of an INPUT element.    Medium  2017-01-07  2009-03-05  View
913  CVE-2008-0943  Multiple SQL injection vulnerabilities in Eagle Software Aeries Browser Interface (ABI) 3.7.2.2 allow remote attackers to execute arbitrary SQL commands via the (1) FC parameter to Comments.asp, or the Term parameter to (2) Labels.asp or (3) ClassList.asp.    7.5  High  2017-01-03  2009-03-05  View
6127  CVE-2008-6396  Cross-site scripting (XSS) vulnerability in account.php in Celerondude Uploader 6.1 allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-03  2009-03-05  View
6128  CVE-2008-6397  rlatex in AlcoveBook sgml2x 1.0.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.    4.4  Medium  2017-01-03  2009-03-05  View

Page 2829 of 17672, showing 5 records out of 88360 total, starting on record 14141, ending on 14145

Actions