NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49548  CVE-2009-2300  The management interface in the phion airlock Web Application Firewall (WAF) 4.1-10.41 does not properly handle CGI requests that specify large width and height parameters for an image, which allows remote attackers to execute arbitrary commands or cause a denial of service (resource consumption) via a crafted request.    10  High  2017-01-07  2009-07-15  View
49565  CVE-2009-2317  The Axesstel MV 410R has a certain default administrator password, and does not force a password change, which makes it easier for remote attackers to obtain access.    10  High  2017-01-07  2009-07-15  View
49569  CVE-2009-2321  cgi-bin/sysconf.cgi on the Axesstel MV 410R allows remote attackers to cause a denial of service (configuration reset) via a RESTORE=RESTORE query string.    7.8  High  2017-01-07  2009-07-15  View
49572  CVE-2009-2324  Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.    4.3  Medium  2017-01-07  2009-07-15  View
49574  CVE-2009-2326  Multiple SQL injection vulnerabilities in KerviNet Forum 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) an enter_parol cookie to index.php in an auto action or (2) the topic parameter to message.php. NOTE: vector 2 can be leveraged for a cross-site scripting (XSS) attack.    7.5  High  2017-01-07  2009-07-15  View

Page 14455 of 17672, showing 5 records out of 88360 total, starting on record 72271, ending on 72275

Actions