NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48876 | CVE-2009-1607 | Cross-site scripting (XSS) vulnerability in the administrator panel in phpForm.net LinkBase 2.0 allows remote attackers to inject arbitrary web script or HTML via the username in a registration, which is not properly handled when the administrator accesses the Users menu. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-12 | View | |
| 48879 | CVE-2009-1610 | admin/changepassword.php in Job Script Job Board Software 2.0 allows remote attackers to change the administrator password and gain administrator privileges via a direct request. | 2 | 7.5 | High | 2017-01-07 | 2009-05-12 | View | |
| 48883 | CVE-2009-1614 | Multiple cross-site scripting (XSS) vulnerabilities in Leap CMS 0.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the msg parameter (aka the message in an article comment) or (2) the searchterm parameter (aka the search post form). NOTE: some of these details are obtained from third party information. | 2 | 2.6 | Low | 2017-01-07 | 2009-05-12 | View | |
| 48884 | CVE-2009-1615 | Unrestricted file upload vulnerability in Leap CMS 0.1.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension via an admin.system.files (aka Manage Files) request to the default URI, then accessing the file via a direct request. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-12 | View | |
| 48885 | CVE-2009-1616 | Cross-site scripting (XSS) vulnerability in docs/showdoc.php in Coppermine Photo Gallery (CPG) before 1.4.22 allows remote attackers to inject arbitrary web script or HTML via the css parameter, a different vector than CVE-2008-0505. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-12 | View |
Page 3046 of 17672, showing 5 records out of 88360 total, starting on record 15226, ending on 15230