NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49548 | CVE-2009-2300 | The management interface in the phion airlock Web Application Firewall (WAF) 4.1-10.41 does not properly handle CGI requests that specify large width and height parameters for an image, which allows remote attackers to execute arbitrary commands or cause a denial of service (resource consumption) via a crafted request. | 2 | 10 | High | 2017-01-07 | 2009-07-15 | View | |
| 49565 | CVE-2009-2317 | The Axesstel MV 410R has a certain default administrator password, and does not force a password change, which makes it easier for remote attackers to obtain access. | 2 | 10 | High | 2017-01-07 | 2009-07-15 | View | |
| 49569 | CVE-2009-2321 | cgi-bin/sysconf.cgi on the Axesstel MV 410R allows remote attackers to cause a denial of service (configuration reset) via a RESTORE=RESTORE query string. | 2 | 7.8 | High | 2017-01-07 | 2009-07-15 | View | |
| 49572 | CVE-2009-2324 | Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-15 | View | |
| 49574 | CVE-2009-2326 | Multiple SQL injection vulnerabilities in KerviNet Forum 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) an enter_parol cookie to index.php in an auto action or (2) the topic parameter to message.php. NOTE: vector 2 can be leveraged for a cross-site scripting (XSS) attack. | 2 | 7.5 | High | 2017-01-07 | 2009-07-15 | View |
Page 14455 of 17672, showing 5 records out of 88360 total, starting on record 72271, ending on 72275