NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50456 | CVE-2009-3251 | include/utils/ListViewUtils.php in vtiger CRM before 5.1.0 allows remote authenticated users to bypass intended access restrictions and read the (1) visibility, (2) location, and (3) recurrence fields of a calendar via a custom view. | 2 | 4 | Medium | 2017-01-07 | 2009-09-21 | View | |
51224 | CVE-2009-4074 | The XSS Filter in Microsoft Internet Explorer 8 allows remote attackers to leverage the "response-changing mechanism" to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, related to the details of output encoding and improper modification of an HTML attribute, aka "XSS Filter Script Handling Vulnerability." | 2 | 4.3 | Medium | 2017-01-07 | 2010-08-21 | View | |
51480 | CVE-2009-4357 | CQWeb (aka the web interface) in IBM Rational ClearQuest before 7.1.1 does not properly handle use of legacy URLs for automatic login, which might allow attackers to discover the passwords for user accounts via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-12-21 | View | |
51992 | CVE-2009-4875 | FCKeditor.Java 2.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed request parameter that contains "ctrl" characters. | 2 | 5 | Medium | 2017-01-07 | 2010-05-26 | View | |
52248 | CVE-2007-0011 | The web portal interface in Citrix Access Gateway (aka Citrix Advanced Access Control) before Advanced Edition 4.5 HF1 places a session ID in the URL, which allows context-dependent attackers to hijack sessions by reading "residual information", including the a referer log, browser history, or browser cache. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 892 of 17672, showing 5 records out of 88360 total, starting on record 4456, ending on 4460