NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5994  CVE-2008-6263  SQL injection vulnerability in lib/user/t_user.php in SaturnCMS allows remote attackers to execute arbitrary SQL commands via the username parameter to the _userLoggedIn function. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2009-06-09  View
48746  CVE-2009-1472  The Java client program for the ATEN KH1516i IP KVM switch with firmware 1.0.063 and the KN9116 IP KVM switch with firmware 1.1.104 has a hardcoded AES encryption key, which makes it easier for man-in-the-middle attackers to (1) execute arbitrary Java code, or (2) gain access to machines connected to the switch, by hijacking a session.    10  High  2017-01-07  2009-06-09  View
49002  CVE-2009-1733  Cross-site request forgery (CSRF) vulnerability in IPplan 4.91a allows remote attackers to hijack the authentication of administrators for requests that (1) change the password, (2) add users, or (3) delete users via unknown vectors.    6.8  Medium  2017-01-07  2009-06-09  View
49003  CVE-2009-1734  SQL injection vulnerability in listing_video.php in VidSharePro allows remote attackers to execute arbitrary SQL commands via the catid parameter.    7.5  High  2017-01-07  2009-06-09  View
49004  CVE-2009-1735  Cross-site scripting (XSS) vulnerability in search.php in VidSharePro allows remote attackers to inject arbitrary web script or HTML via the searchtxt parameter. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-07  2009-06-09  View

Page 3115 of 17672, showing 5 records out of 88360 total, starting on record 15571, ending on 15575

Actions