NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49036 | CVE-2009-1767 | admin/edituser.php in 2daybiz Template Monster Clone does not require administrative authentication, which allows remote attackers to modify arbitrary accounts via the (1) loginname, (2) password, (3) email, (4) firstname, or (5) lastname parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-05-24 | View | |
| 49041 | CVE-2009-1772 | Cross-site scripting (XSS) vulnerability in activeCollab 2.1 Corporate allows remote attackers to inject arbitrary web script or HTML via the re_route parameter to the login script. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-24 | View | |
| 49042 | CVE-2009-1773 | activeCollab 2.1 Corporate allows remote attackers to obtain sensitive information via an invalid re_route parameter to the login script, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-07 | 2009-05-24 | View | |
| 49048 | CVE-2009-1779 | PHP remote file inclusion vulnerability in admin.php in Frax.dk Php Recommend 1.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the form_include_template parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-24 | View | |
| 49054 | CVE-2009-1785 | Cross-site scripting (XSS) vulnerability in Ulteo Open Virtual Desktop 1.0 allows remote attackers to inject arbitrary web script or HTML via the error parameter to header.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-24 | View |
Page 3093 of 17672, showing 5 records out of 88360 total, starting on record 15461, ending on 15465