NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49285  CVE-2009-2023  SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the current_currency parameter.    6.8  Medium  2017-01-07  2009-06-10  View
49286  CVE-2009-2024  Vlad Titarenko ASP VT Auth 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file and obtain usernames and passwords via a direct request for zHk8dEes3.txt.    Medium  2017-01-07  2009-06-10  View
49287  CVE-2009-2025  admin/login.php in DM FileManager 3.9.2 allows remote attackers to bypass authentication and gain administrative access by setting the (1) USER, (2) GROUPID, (3) GROUP, and (4) USERID cookies to certain values.    7.5  High  2017-01-07  2009-06-10  View
6539  CVE-2008-6808  SQL injection vulnerability in links.php in Scripts for Sites (SFS) EZ Link Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.    7.5  High  2017-01-03  2009-06-10  View
49074  CVE-2009-1808  Microsoft Windows XP SP3 allows local users to cause a denial of service (system crash) by making an SPI_SETDESKWALLPAPER SystemParametersInfo call with an improperly terminated pvParam argument, followed by an SPI_GETDESKWALLPAPER SystemParametersInfo call.    4.9  Medium  2017-01-07  2009-06-10  View

Page 3130 of 17672, showing 5 records out of 88360 total, starting on record 15646, ending on 15650

Actions