NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49285 | CVE-2009-2023 | SQL injection vulnerability in index.php in Shop-Script Pro 2.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the current_currency parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 49286 | CVE-2009-2024 | Vlad Titarenko ASP VT Auth 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file and obtain usernames and passwords via a direct request for zHk8dEes3.txt. | 2 | 5 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 49287 | CVE-2009-2025 | admin/login.php in DM FileManager 3.9.2 allows remote attackers to bypass authentication and gain administrative access by setting the (1) USER, (2) GROUPID, (3) GROUP, and (4) USERID cookies to certain values. | 2 | 7.5 | High | 2017-01-07 | 2009-06-10 | View | |
| 6539 | CVE-2008-6808 | SQL injection vulnerability in links.php in Scripts for Sites (SFS) EZ Link Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action. | 2 | 7.5 | High | 2017-01-03 | 2009-06-10 | View | |
| 49074 | CVE-2009-1808 | Microsoft Windows XP SP3 allows local users to cause a denial of service (system crash) by making an SPI_SETDESKWALLPAPER SystemParametersInfo call with an improperly terminated pvParam argument, followed by an SPI_GETDESKWALLPAPER SystemParametersInfo call. | 2 | 4.9 | Medium | 2017-01-07 | 2009-06-10 | View |
Page 3130 of 17672, showing 5 records out of 88360 total, starting on record 15646, ending on 15650