NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49004  CVE-2009-1735  Cross-site scripting (XSS) vulnerability in search.php in VidSharePro allows remote attackers to inject arbitrary web script or HTML via the searchtxt parameter. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-07  2009-06-09  View
48749  CVE-2009-1476  Buffer overflow in lib/load_http.c in ippool in Darren Reed IPFilter (aka IP Filter) 4.1.31 allows local users to gain privileges via vectors involving a long hostname in a URL.    7.2  High  2017-01-07  2009-06-09  View
48750  CVE-2009-1477  The https web interfaces on the ATEN KH1516i IP KVM switch with firmware 1.0.063, the KN9116 IP KVM switch with firmware 1.1.104, and the PN9108 power-control unit have a hardcoded SSL private key, which makes it easier for remote attackers to decrypt https sessions by extracting this key from their own switch and then sniffing network traffic to a switch owned by a different customer.    10  High  2017-01-07  2009-06-09  View
49008  CVE-2009-1739  PAD Site Scripts 3.6 allows remote attackers to bypass authentication and gain privileges as other users, including administrative privileges, by setting the authuser cookie parameter to a valid username.    7.5  High  2017-01-07  2009-06-09  View
6001  CVE-2008-6270  SQL injection vulnerability in admin/index.php in Dragan Mitic Apoll 0.7 beta and 0.7.5 allows remote attackers to execute arbitrary SQL command via the user parameter.    7.5  High  2017-01-03  2009-06-09  View

Page 14550 of 17672, showing 5 records out of 88360 total, starting on record 72746, ending on 72750

Actions