NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49036  CVE-2009-1767  admin/edituser.php in 2daybiz Template Monster Clone does not require administrative authentication, which allows remote attackers to modify arbitrary accounts via the (1) loginname, (2) password, (3) email, (4) firstname, or (5) lastname parameter.    Medium  2017-01-07  2009-05-24  View
49041  CVE-2009-1772  Cross-site scripting (XSS) vulnerability in activeCollab 2.1 Corporate allows remote attackers to inject arbitrary web script or HTML via the re_route parameter to the login script.    4.3  Medium  2017-01-07  2009-05-24  View
49042  CVE-2009-1773  activeCollab 2.1 Corporate allows remote attackers to obtain sensitive information via an invalid re_route parameter to the login script, which reveals the installation path in an error message.    Medium  2017-01-07  2009-05-24  View
49048  CVE-2009-1779  PHP remote file inclusion vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the form_include_template parameter.    6.8  Medium  2017-01-07  2009-05-24  View
49054  CVE-2009-1785  Cross-site scripting (XSS) vulnerability in Ulteo Open Virtual Desktop 1.0 allows remote attackers to inject arbitrary web script or HTML via the error parameter to header.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-07  2009-05-24  View

Page 3093 of 17672, showing 5 records out of 88360 total, starting on record 15461, ending on 15465

Actions