NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48376 | CVE-2009-1066 | SQL injection vulnerability in the referral function in admin/lib/lib_logs.php in Pixie CMS 1.01a allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header in a request. | 2 | 7.5 | High | 2017-01-07 | 2009-03-26 | View | |
| 48377 | CVE-2009-1067 | Cross-site scripting (XSS) vulnerability in index.php in Pixie CMS 1.01a allows remote attackers to inject arbitrary web script or HTML via the x parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-26 | View | |
| 48379 | CVE-2009-1069 | Multiple cross-site scripting (XSS) vulnerabilities in the node edit form feature in Drupal Content Construction Kit (CCK) 6.x before 6.x-2.2, a module for Drupal, allow remote attackers to inject arbitrary web script or HTML via the (1) titles of candidate referenced nodes in the Node reference sub-module and the (2) names of candidate referenced users in the User reference sub-module. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-26 | View | |
| 6262 | CVE-2008-6531 | The WebWork 1 web application framework in Atlassian JIRA before 3.13.2 allows remote attackers to invoke exposed public JIRA methods via a crafted URL that is dynamically transformed into method calls, aka "WebWork 1 Parameter Injection Hole." | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-27 | View | |
| 6265 | CVE-2008-6534 | Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument. | 2 | 7.1 | High | 2017-01-03 | 2009-03-27 | View |
Page 2901 of 17672, showing 5 records out of 88360 total, starting on record 14501, ending on 14505