CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
40933 | CVE-2009-3498 | Candidate | SQL injection vulnerability in php/update_article_hits.php in HBcms 1.7 allows remote attackers to execute arbitrary SQL commands via the article_id parameter. | Assigned (20090930) | None (candidate not yet proposed) | View | |
41189 | CVE-2009-3754 | Candidate | Multiple SQL injection vulnerabilities in phpBMS 0.96 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to modules/bms/invoices_discount_ajax.php, (2) f parameter to dbgraphic.php, and (3) tid parameter in a show action to advancedsearch.php. | Assigned (20091022) | None (candidate not yet proposed) | View | |
41445 | CVE-2009-4010 | Candidate | Unspecified vulnerability in PowerDNS Recursor before 3.1.7.2 allows remote attackers to spoof DNS data via crafted zones. | Assigned (20091119) | None (candidate not yet proposed) | View | |
41701 | CVE-2009-4266 | Candidate | Cross-site scripting (XSS) vulnerability in search.php in YABSoft Advanced Image Hosting (AIH) Script 2.2, and possibly 2.3, allows remote attackers to inject arbitrary web script or HTML via the text parameter. | Assigned (20091210) | None (candidate not yet proposed) | View | |
41957 | CVE-2009-4522 | Candidate | Cross-site scripting (XSS) vulnerability in search.5.html in BloofoxCMS 0.3.5 allows remote attackers to inject arbitrary web script or HTML via the search parameter to index.php. NOTE: some of these details are obtained from third party information. | Assigned (20091231) | None (candidate not yet proposed) | View |
Page 18883 of 20943, showing 5 records out of 104715 total, starting on record 94411, ending on 94415