NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50713 | CVE-2009-3512 | Multiple cross-site scripting (XSS) vulnerabilities in MyWeight 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) date parameter to user_addfood.php, info parameter to (2) user_forgot_pwd_form.php and (3) user_login.php, and (4) return parameter to user_login.php. | 2 | 4.3 | Medium | 2017-01-07 | 2009-10-02 | View | |
51225 | CVE-2009-4075 | Unspecified vulnerability in the timeout mechanism in sshd in Sun Solaris 10, and OpenSolaris snv_99 through snv_123, allows remote attackers to cause a denial of service (daemon outage) via unknown vectors that trigger a "dangling sshd authentication thread." | 2 | 5 | Medium | 2017-01-07 | 2009-12-19 | View | |
51481 | CVE-2009-4358 | freebsd-update in FreeBSD 8.0, 7.2, 7.1, 6.4, and 6.3 uses insecure permissions in its working directory (/var/db/freebsd-update by default), which allows local users to read copies of sensitive files after a (1) freebsd-update fetch (fetch) or (2) freebsd-update upgrade (upgrade) operation. | 2 | 4.7 | Medium | 2017-01-07 | 2009-12-21 | View | |
51993 | CVE-2009-4876 | admin/cikkform.php in Netrix CMS 1.0 allows remote attackers to modify arbitrary pages via a direct request using the cid parameter. | 2 | 5 | Medium | 2017-01-07 | 2010-05-27 | View | |
52249 | CVE-2007-0012 | Sun JRE 5.0 before update 14 allows remote attackers to cause a denial of service (Internet Explorer crash) via an object tag with an encoded applet and an undefined name attribute, which triggers a NULL pointer dereference in jpiexp32.dll when the applet is decoded and passed to the JVM. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 930 of 17672, showing 5 records out of 88360 total, starting on record 4646, ending on 4650