NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 50394 | CVE-2009-3189 | Cross-site scripting (XSS) vulnerability in search.php in DigiOz Guestbook 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the search_term parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-09-16 | View | |
| 50650 | CVE-2009-3449 | MP3 Collector 2.3 allows remote attackers to cause a denial of service (application crash) via a long URL in a .m3u playlist file. | 2 | 4.3 | Medium | 2017-01-07 | 2009-09-30 | View | |
| 50906 | CVE-2009-3720 | The updatePosition function in lib/xmltok_impl.c in libexpat in Expat 2.0.1, as used in Python, PyXML, w3c-libwww, and other software, allows context-dependent attackers to cause a denial of service (application crash) via an XML document with crafted UTF-8 sequences that trigger a buffer over-read, a different vulnerability than CVE-2009-2625. | 2 | 5 | Medium | 2017-01-07 | 2016-08-22 | View | |
| 51162 | CVE-2009-4008 | Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query. | 2 | 5 | Medium | 2017-01-07 | 2011-06-14 | View | |
| 51418 | CVE-2009-4295 | Sun Ray Server Software 4.0 and 4.1 does not generate a unique DSA private key for the firmware on each Sun Ray 1, 1g, 100, and 150 DTU device, which makes it easier for remote attackers to obtain sensitive information by predicting a key and then using it to decrypt sniffed network traffic. | 2 | 7.8 | High | 2017-01-07 | 2009-12-14 | View |
Page 14793 of 17672, showing 5 records out of 88360 total, starting on record 73961, ending on 73965