NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48386  CVE-2009-1076  Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the end-user question-based login feature depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.    Medium  2017-01-07  2009-03-25  View
48642  CVE-2009-1356  Stack-based buffer overflow in Elecard AVC HD Player allows remote attackers to execute arbitrary code via a long MP3 filename in a playlist (.xpl) file.    9.3  High  2017-01-07  2009-04-21  View
48898  CVE-2009-1629  ajaxterm.js in AjaxTerm 0.10 and earlier generates session IDs with predictable random numbers based on certain JavaScript functions, which makes it easier for remote attackers to (1) hijack a session or (2) cause a denial of service (session ID exhaustion) via a brute-force attack.    6.8  Medium  2017-01-07  2011-01-19  View
49154  CVE-2009-1889  The OSCAR protocol implementation in Pidgin before 2.5.8 misinterprets the ICQWebMessage message type as the ICQSMS message type, which allows remote attackers to cause a denial of service (application crash) via a crafted ICQ web message that triggers allocation of a large amount of memory.    Medium  2017-01-07  2011-09-14  View
49410  CVE-2009-2148  SQL injection vulnerability in news/index.php in Campus Virtual-LMS allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2009-06-23  View

Page 542 of 17672, showing 5 records out of 88360 total, starting on record 2706, ending on 2710

Actions