NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50179  CVE-2009-2960  CuteFlow 2.10.3 and 2.11.0_c does not properly restrict access to pages/edituser.php, which allows remote attackers to modify usernames and passwords via a direct request.    7.5  High  2017-01-07  2009-08-25  View
50947  CVE-2009-3778  SQL injection vulnerability in Moodle Course List 6.x before 6.x-1.2, a module for Drupal, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-07  2009-10-27  View
51715  CVE-2009-4598  SQL injection vulnerability in the JPhoto (com_jphoto) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a category action to index.php.    7.5  High  2017-01-07  2010-01-13  View
51971  CVE-2009-4854  addons/import.php in TalkBack 2.3.14 allows remote attackers to execute arbitrary commands via the result parameter.    7.5  High  2017-01-07  2010-05-26  View
52483  CVE-2007-0255  XINE 0.99.4 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain M3U file that contains a long #EXTINF line and contains format string specifiers in an invalid udp:// URI, possibly a variant of CVE-2007-0017.    9.3  High  2017-01-07  2010-09-15  View

Page 447 of 17672, showing 5 records out of 88360 total, starting on record 2231, ending on 2235

Actions