NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48731 | CVE-2009-1455 | Multiple cross-site request forgery (CSRF) vulnerabilities in WebCollab before 2.50 (aka Billy Goat) allow remote attackers to hijack the authentication of administrators for requests that change an arbitrary password or have other unspecified impact. | 2 | 6.8 | Medium | 2017-01-07 | 2009-04-28 | View | |
| 6492 | CVE-2008-6761 | Static code injection vulnerability in admin/install.php in Flexcustomer 0.0.6 might allow remote attackers to inject arbitrary PHP code into const.inc.php via the installdbname parameter (aka the Database Name field). NOTE: the installation instructions specify deleting admin/install.php. | 2 | 10 | High | 2017-01-03 | 2009-04-28 | View | |
| 48732 | CVE-2009-1456 | Directory traversal vulnerability in admin.php in Malleo 1.2.3 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the module parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2009-04-28 | View | |
| 6494 | CVE-2008-6763 | login2.php in Silentum LoginSys 1.0.0 allows remote attackers to bypass authentication and obtain access to an arbitrary account by setting the logged_in cookie to that account"s username. | 2 | 7.5 | High | 2017-01-03 | 2009-04-28 | View | |
| 48734 | CVE-2009-1458 | Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in razorCMS before 0.4 allow remote attackers to inject arbitrary web script or HTML via (1) the slab parameter in an edit action, (2) the catname parameter in a showcats action, and (3) the cat parameter in a reordercat action. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-28 | View |
Page 3020 of 17672, showing 5 records out of 88360 total, starting on record 15096, ending on 15100