NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49431  CVE-2009-2169  Insecure method vulnerability in the PDFVIEWER.PDFViewerCtrl.1 ActiveX control (pdfviewer.ocx) in Edraw PDF Viewer Component before 3.2.0.126 allows remote attackers to create and overwrite arbitrary files via a URL argument to the FtpConnect argument and a target filename argument to the FtpDownloadFile method. NOTE: this can be leveraged for code execution by writing to a Startup folder.    9.3  High  2017-01-07  2009-06-23  View
49943  CVE-2009-2702  KDE KSSL in kdelibs 3.5.4, 4.2.4, and 4.3 does not properly handle a "" character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.    7.5  High  2017-01-07  2012-01-18  View
50199  CVE-2009-2982  An unspecified certificate in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow remote attackers to conduct a "social engineering attack" via unknown vectors.    9.3  High  2017-01-07  2010-08-21  View
50455  CVE-2009-3250  The saveForwardAttachments procedure in the Compose Mail functionality in vtiger CRM 5.0.4 allows remote authenticated users to execute arbitrary code by composing an e-mail message with an attachment filename ending in (1) .php in installations based on certain Apache HTTP Server configurations, (2) .php. on Windows, or (3) .php/ on Linux, and then making a direct request to a certain pathname under storage/.    High  2017-01-07  2009-09-21  View
50711  CVE-2009-3510  SQL injection vulnerability in viewListing.php in linkSpheric 0.74 Beta 6 allows remote attackers to execute arbitrary SQL commands via the listID parameter.    7.5  High  2017-01-07  2009-10-02  View

Page 993 of 17672, showing 5 records out of 88360 total, starting on record 4961, ending on 4965

Actions