NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48376  CVE-2009-1066  SQL injection vulnerability in the referral function in admin/lib/lib_logs.php in Pixie CMS 1.01a allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header in a request.    7.5  High  2017-01-07  2009-03-26  View
48377  CVE-2009-1067  Cross-site scripting (XSS) vulnerability in index.php in Pixie CMS 1.01a allows remote attackers to inject arbitrary web script or HTML via the x parameter.    4.3  Medium  2017-01-07  2009-03-26  View
48379  CVE-2009-1069  Multiple cross-site scripting (XSS) vulnerabilities in the node edit form feature in Drupal Content Construction Kit (CCK) 6.x before 6.x-2.2, a module for Drupal, allow remote attackers to inject arbitrary web script or HTML via the (1) titles of candidate referenced nodes in the Node reference sub-module and the (2) names of candidate referenced users in the User reference sub-module.    4.3  Medium  2017-01-07  2009-03-26  View
6262  CVE-2008-6531  The WebWork 1 web application framework in Atlassian JIRA before 3.13.2 allows remote attackers to invoke exposed public JIRA methods via a crafted URL that is dynamically transformed into method calls, aka "WebWork 1 Parameter Injection Hole."    6.8  Medium  2017-01-03  2009-03-27  View
6265  CVE-2008-6534  Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument.    7.1  High  2017-01-03  2009-03-27  View

Page 2901 of 17672, showing 5 records out of 88360 total, starting on record 14501, ending on 14505

Actions