NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6224 | CVE-2008-6493 | Easy Content Management Publishing stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for Database/News.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 47696 | CVE-2009-0364 | Format string vulnerability in the mini_calendar component in Citadel.org WebCit 7.22, and other versions before 7.39, allows remote attackers to execute arbitrary code via unspecified vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-04-02 | View | |
| 6225 | CVE-2008-6494 | ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 5460 | CVE-2008-5718 | The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title. | 2 | 9.3 | High | 2017-01-03 | 2009-04-02 | View | |
| 48468 | CVE-2009-1175 | Cross-site scripting (XSS) vulnerability in apps/web/vs_diag.cgi in the DAAP extension in Banshee 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the server parameter, which is not properly handled in an error message. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-02 | View |
Page 2923 of 17672, showing 5 records out of 88360 total, starting on record 14611, ending on 14615