NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6495  CVE-2008-6764  Cross-site scripting (XSS) vulnerability in login.php in Silentum LoginSys 1.0.0 allows remote attackers to inject arbitrary web script or HTML via the message parameter.    4.3  Medium  2017-01-03  2009-04-28  View
48735  CVE-2009-1459  Cross-site request forgery (CSRF) vulnerability in razorCMS before 0.4 allows remote attackers to hijack the authentication of administrators for requests that create a web page containing PHP code.    6.8  Medium  2017-01-07  2009-04-28  View
6496  CVE-2008-6765  ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to access the contents of an arbitrary shopping cart via a modified cart_name parameter.    Medium  2017-01-03  2009-04-28  View
48736  CVE-2009-1460  razorCMS before 0.4 uses weak permissions for (1) admin/core/admin_config.php, which allows local users to obtain the administrator"s password hash and FTP user credentials; and (2) the root directory, (3) datastore/, and (4) admin/core/, which allows local users to have an unspecified impact.    4.6  Medium  2017-01-07  2009-04-28  View
58720  CVE-2007-6726  Multiple cross-site scripting (XSS) vulnerabilities in Dojo 0.4.1 and 0.4.2, as used in Apache Struts and other products, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving (1) xip_client.html and (2) xip_server.html in src/io/.    4.3  Medium  2017-01-07  2009-04-28  View

Page 3021 of 17672, showing 5 records out of 88360 total, starting on record 15101, ending on 15105

Actions