NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48339  CVE-2009-1029  Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a long Date header, related to Imap.dll.    9.3  High  2017-01-07  2009-03-20  View
2299  CVE-2008-2380  SQL injection vulnerability in authpgsqllib.c in Courier-Authlib before 0.62.0, when a non-Latin locale Postgres database is used, allows remote attackers to execute arbitrary SQL commands via query parameters containing apostrophes.    5.1  Medium  2017-01-03  2009-03-20  View
48140  CVE-2009-0825  SQL injection vulnerability in system/rss.php in TinX/cms 3.x before 3.5.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2009-03-21  View
48143  CVE-2009-0828  QuoteBook stores quotes.inc under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information, including user credentials, via a direct request.    Medium  2017-01-07  2009-03-21  View
47376  CVE-2009-0027  The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not properly validate the resource path during a request for a WSDL file with a custom web-service endpoint, which allows remote attackers to read arbitrary XML files via a crafted request.    Medium  2017-01-07  2009-03-21  View

Page 2883 of 17672, showing 5 records out of 88360 total, starting on record 14411, ending on 14415

Actions