NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48876  CVE-2009-1607  Cross-site scripting (XSS) vulnerability in the administrator panel in phpForm.net LinkBase 2.0 allows remote attackers to inject arbitrary web script or HTML via the username in a registration, which is not properly handled when the administrator accesses the Users menu.    4.3  Medium  2017-01-07  2009-05-12  View
48879  CVE-2009-1610  admin/changepassword.php in Job Script Job Board Software 2.0 allows remote attackers to change the administrator password and gain administrator privileges via a direct request.    7.5  High  2017-01-07  2009-05-12  View
48883  CVE-2009-1614  Multiple cross-site scripting (XSS) vulnerabilities in Leap CMS 0.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the msg parameter (aka the message in an article comment) or (2) the searchterm parameter (aka the search post form). NOTE: some of these details are obtained from third party information.    2.6  Low  2017-01-07  2009-05-12  View
48884  CVE-2009-1615  Unrestricted file upload vulnerability in Leap CMS 0.1.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension via an admin.system.files (aka Manage Files) request to the default URI, then accessing the file via a direct request.    6.8  Medium  2017-01-07  2009-05-12  View
48885  CVE-2009-1616  Cross-site scripting (XSS) vulnerability in docs/showdoc.php in Coppermine Photo Gallery (CPG) before 1.4.22 allows remote attackers to inject arbitrary web script or HTML via the css parameter, a different vector than CVE-2008-0505.    4.3  Medium  2017-01-07  2009-05-12  View

Page 3046 of 17672, showing 5 records out of 88360 total, starting on record 15226, ending on 15230

Actions