NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49169 | CVE-2009-1904 | The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type. | 2 | 5 | Medium | 2017-01-07 | 2010-08-21 | View | |
| 49425 | CVE-2009-2163 | Cross-site scripting (XSS) vulnerability in login/default.aspx in Sitecore CMS before 6.0.2 Update-1 090507 allows remote attackers to inject arbitrary web script or HTML via the sc_error parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-23 | View | |
| 49681 | CVE-2009-2436 | SQL injection vulnerability in page.php in Online Dating Software MyPHPDating 1.0 allows remote attackers to execute arbitrary SQL commands via the page_id parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-07-13 | View | |
| 49937 | CVE-2009-2696 | Cross-site scripting (XSS) vulnerability in jsp/cal/cal2.jsp in the calendar application in the examples web application in Apache Tomcat on Red Hat Enterprise Linux 5, Desktop Workstation 5, and Linux Desktop 5 allows remote attackers to inject arbitrary web script or HTML via the time parameter, related to "invalid HTML." NOTE: this is due to a missing fix for CVE-2009-0781. | 2 | 4.3 | Medium | 2017-01-07 | 2016-10-27 | View | |
| 50193 | CVE-2009-2976 | Cisco Aironet Lightweight Access Point (AP) devices send the contents of certain multicast data frames in cleartext, which allows remote attackers to discover Wireless LAN Controller MAC addresses and IP addresses, and AP configuration details, by sniffing the wireless network. | 2 | 7.8 | High | 2017-01-07 | 2009-08-28 | View |
Page 3270 of 17672, showing 5 records out of 88360 total, starting on record 16346, ending on 16350