NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49552 | CVE-2009-2304 | index.php in Aardvark Topsites PHP 5.2.0 and earlier allows remote attackers to obtain sensitive information via a nonexistent account name in the u parameter in a rate action, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-07 | 2009-07-02 | View | |
| 49553 | CVE-2009-2305 | The ARD-9808 DVR card security camera allows remote attackers to cause a denial of service via a long URI composed of //. (slash slash dot backslash) sequences. | 2 | 7.8 | High | 2017-01-07 | 2009-07-02 | View | |
| 49554 | CVE-2009-2306 | The ARD-9808 DVR card security camera stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing usernames and passwords via a direct request for dvr.ini. | 2 | 7.5 | High | 2017-01-07 | 2009-07-02 | View | |
| 49555 | CVE-2009-2307 | SQL injection vulnerability in the CWGuestBook module 2.1 and earlier for MAXdev MDPro (aka MD-Pro) allows remote attackers to execute arbitrary SQL commands via the rid parameter in a viewrecords action to modules.php. | 2 | 7.5 | High | 2017-01-07 | 2009-07-02 | View | |
| 49556 | CVE-2009-2308 | Multiple SQL injection vulnerabilities in affiliates.php in the Affiliation (aka Affiliates) module 1.1.0 and earlier for PunBB allow remote attackers to execute arbitrary SQL commands via the (1) in or (2) out parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-07-02 | View |
Page 3190 of 17672, showing 5 records out of 88360 total, starting on record 15946, ending on 15950