NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49687 | CVE-2009-2442 | Cross-site scripting (XSS) vulnerability in public/index.php in Linea21 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the search parameter in a resultats-recherche action. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-13 | View | |
| 49688 | CVE-2009-2443 | Siteframe 3.2.3, and other 3.2.x versions, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-07 | 2009-07-13 | View | |
| 49633 | CVE-2009-2386 | Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method. | 2 | 9.3 | High | 2017-01-07 | 2009-07-13 | View | |
| 49643 | CVE-2009-2396 | PHP remote file inclusion vulnerability in template/album.php in DM Albums 1.9.2, as used standalone or as a WordPress plugin, allows remote attackers to execute arbitrary PHP code via a URL in the SECURITY_FILE parameter. | 2 | 9.3 | High | 2017-01-07 | 2009-07-13 | View | |
| 49671 | CVE-2009-2426 | The connection_edge_process_relay_cell_not_open function in src/or/relay.c in Tor 0.2.x before 0.2.0.35 and 0.1.x before 0.1.2.8-beta allows exit relays to have an unspecified impact by causing controllers to accept DNS responses that redirect to an internal IP address via unknown vectors. NOTE: some of these details are obtained from third party information. | 2 | 5 | Medium | 2017-01-07 | 2009-07-14 | View |
Page 3213 of 17672, showing 5 records out of 88360 total, starting on record 16061, ending on 16065