NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5695  CVE-2008-5964  Session fixation vulnerability in Social ImpressCMS before 1.1.1 RC1 allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.    6.8  Medium  2017-01-03  2009-08-15  View
6463  CVE-2008-6732  Cross-site scripting (XSS) vulnerability in the Language skin object in DotNetNuke before 4.8.4 allows remote attackers to inject arbitrary web script or HTML via "newly generated paths."    4.3  Medium  2017-01-03  2009-08-15  View
6464  CVE-2008-6733  Cross-site scripting (XSS) vulnerability in the error handling page in DotNetNuke 4.6.2 through 4.8.3 allows remote attackers to inject arbitrary web script or HTML via the querystring parameter.    4.3  Medium  2017-01-03  2009-08-15  View
49988  CVE-2009-2762  wp-login.php in WordPress 2.8.3 and earlier allows remote attackers to force a password reset for the first user in the database, possibly the administrator, via a key[] array variable in a resetpass (aka rp) action, which bypasses a check that assumes that $key is not an array.    7.5  High  2017-01-07  2009-08-15  View
49989  CVE-2009-2764  Microsoft Internet Explorer 8.0.7100.0 on Windows 7 RC on the x64 platform allows remote attackers to cause a denial of service (application crash) via a certain DIV element in conjunction with SCRIPT elements that have empty contents and no reference to a valid external script location.    Medium  2017-01-07  2009-08-15  View

Page 3308 of 17672, showing 5 records out of 88360 total, starting on record 16536, ending on 16540

Actions