NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49687  CVE-2009-2442  Cross-site scripting (XSS) vulnerability in public/index.php in Linea21 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the search parameter in a resultats-recherche action.    4.3  Medium  2017-01-07  2009-07-13  View
49688  CVE-2009-2443  Siteframe 3.2.3, and other 3.2.x versions, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.    Medium  2017-01-07  2009-07-13  View
49633  CVE-2009-2386  Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method.    9.3  High  2017-01-07  2009-07-13  View
49643  CVE-2009-2396  PHP remote file inclusion vulnerability in template/album.php in DM Albums 1.9.2, as used standalone or as a WordPress plugin, allows remote attackers to execute arbitrary PHP code via a URL in the SECURITY_FILE parameter.    9.3  High  2017-01-07  2009-07-13  View
49671  CVE-2009-2426  The connection_edge_process_relay_cell_not_open function in src/or/relay.c in Tor 0.2.x before 0.2.0.35 and 0.1.x before 0.1.2.8-beta allows exit relays to have an unspecified impact by causing controllers to accept DNS responses that redirect to an internal IP address via unknown vectors. NOTE: some of these details are obtained from third party information.    Medium  2017-01-07  2009-07-14  View

Page 3213 of 17672, showing 5 records out of 88360 total, starting on record 16061, ending on 16065

Actions