NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5695 | CVE-2008-5964 | Session fixation vulnerability in Social ImpressCMS before 1.1.1 RC1 allows remote attackers to hijack web sessions by setting the PHPSESSID parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-15 | View | |
| 6463 | CVE-2008-6732 | Cross-site scripting (XSS) vulnerability in the Language skin object in DotNetNuke before 4.8.4 allows remote attackers to inject arbitrary web script or HTML via "newly generated paths." | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-15 | View | |
| 6464 | CVE-2008-6733 | Cross-site scripting (XSS) vulnerability in the error handling page in DotNetNuke 4.6.2 through 4.8.3 allows remote attackers to inject arbitrary web script or HTML via the querystring parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-15 | View | |
| 49988 | CVE-2009-2762 | wp-login.php in WordPress 2.8.3 and earlier allows remote attackers to force a password reset for the first user in the database, possibly the administrator, via a key[] array variable in a resetpass (aka rp) action, which bypasses a check that assumes that $key is not an array. | 2 | 7.5 | High | 2017-01-07 | 2009-08-15 | View | |
| 49989 | CVE-2009-2764 | Microsoft Internet Explorer 8.0.7100.0 on Windows 7 RC on the x64 platform allows remote attackers to cause a denial of service (application crash) via a certain DIV element in conjunction with SCRIPT elements that have empty contents and no reference to a valid external script location. | 2 | 5 | Medium | 2017-01-07 | 2009-08-15 | View |
Page 3308 of 17672, showing 5 records out of 88360 total, starting on record 16536, ending on 16540