NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50179 | CVE-2009-2960 | CuteFlow 2.10.3 and 2.11.0_c does not properly restrict access to pages/edituser.php, which allows remote attackers to modify usernames and passwords via a direct request. | 2 | 7.5 | High | 2017-01-07 | 2009-08-25 | View | |
50947 | CVE-2009-3778 | SQL injection vulnerability in Moodle Course List 6.x before 6.x-1.2, a module for Drupal, allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-10-27 | View | |
51715 | CVE-2009-4598 | SQL injection vulnerability in the JPhoto (com_jphoto) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a category action to index.php. | 2 | 7.5 | High | 2017-01-07 | 2010-01-13 | View | |
51971 | CVE-2009-4854 | addons/import.php in TalkBack 2.3.14 allows remote attackers to execute arbitrary commands via the result parameter. | 2 | 7.5 | High | 2017-01-07 | 2010-05-26 | View | |
52483 | CVE-2007-0255 | XINE 0.99.4 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain M3U file that contains a long #EXTINF line and contains format string specifiers in an invalid udp:// URI, possibly a variant of CVE-2007-0017. | 2 | 9.3 | High | 2017-01-07 | 2010-09-15 | View |
Page 447 of 17672, showing 5 records out of 88360 total, starting on record 2231, ending on 2235