NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
50970 | CVE-2009-3802 | Amiro.CMS 5.4.0.0 and earlier allows remote attackers to obtain sensitive information via an invalid loginname ("%%%") to _admin/index.php, which reveals the installation path and other information in an error message. | 2 | 5 | Medium | 2017-01-07 | 2009-10-28 | View | |
51226 | CVE-2009-4076 | Cross-site request forgery (CSRF) vulnerability in Roundcube Webmail 0.2.2 and earlier allows remote attackers to hijack the authentication of unspecified users for requests that modify user information via unspecified vectors, a different vulnerability than CVE-2009-4077. | 2 | 6.8 | Medium | 2017-01-07 | 2015-08-24 | View | |
51482 | CVE-2009-4359 | Cross-site scripting (XSS) vulnerability in folder.php in the SmartMedia 0.85 Beta module for XOOPS allows remote attackers to inject arbitrary web script or HTML via the categoryid parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-12-21 | View | |
51994 | CVE-2009-4877 | Multiple cross-site request forgery (CSRF) vulnerabilities in WebGUI before 7.7.14 allow remote attackers to hijack the authentication of users for unspecified requests via unknown vectors. | 2 | 6.8 | Medium | 2017-01-07 | 2010-05-27 | View | |
52250 | CVE-2007-0014 | ChainKey Java Code Protection allows attackers to decompile Java class files via a Java class loader with a modified defineClass method that saves the bytecode to a file before it is passed to the JVM. | 1 | 2 | 4.4 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 964 of 17672, showing 5 records out of 88360 total, starting on record 4816, ending on 4820