NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47740  CVE-2009-0408  Cross-site request forgery (CSRF) vulnerability in osCommerce 2.2 RC 2a allows remote attackers to hijack the authentication of administrators.    Medium  2017-01-07  2009-04-02  View
2429  CVE-2008-2521  SQL injection vulnerability in members.php in YABSoft Mega File Hosting Script (aka MFH or MFHS) 1.2 allows remote authenticated users to execute arbitrary SQL commands via the fid parameter.    6.5  Medium  2017-01-03  2009-04-02  View
48511  CVE-2009-1224  SQL injection vulnerability in vsp-core/pub/themes/bismarck/gamestat.php in vsp stats processor 0.45 allows remote attackers to execute arbitrary SQL commands via the gameID parameter.    7.5  High  2017-01-07  2009-04-02  View
48512  CVE-2009-1225  Cross-site scripting (XSS) vulnerability in index.php in Turnkey Ebook Store 1.1 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search action.    4.3  Medium  2017-01-07  2009-04-02  View
2433  CVE-2008-2525  Cross-site scripting (XSS) vulnerability in the Event Database (aka rlmp_eventdb) extension before 1.1.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-03  2009-04-02  View

Page 2927 of 17672, showing 5 records out of 88360 total, starting on record 14631, ending on 14635

Actions