NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
50394  CVE-2009-3189  Cross-site scripting (XSS) vulnerability in search.php in DigiOz Guestbook 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the search_term parameter.    4.3  Medium  2017-01-07  2009-09-16  View
50650  CVE-2009-3449  MP3 Collector 2.3 allows remote attackers to cause a denial of service (application crash) via a long URL in a .m3u playlist file.    4.3  Medium  2017-01-07  2009-09-30  View
50906  CVE-2009-3720  The updatePosition function in lib/xmltok_impl.c in libexpat in Expat 2.0.1, as used in Python, PyXML, w3c-libwww, and other software, allows context-dependent attackers to cause a denial of service (application crash) via an XML document with crafted UTF-8 sequences that trigger a buffer over-read, a different vulnerability than CVE-2009-2625.    Medium  2017-01-07  2016-08-22  View
51162  CVE-2009-4008  Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query.    Medium  2017-01-07  2011-06-14  View
51418  CVE-2009-4295  Sun Ray Server Software 4.0 and 4.1 does not generate a unique DSA private key for the firmware on each Sun Ray 1, 1g, 100, and 150 DTU device, which makes it easier for remote attackers to obtain sensitive information by predicting a key and then using it to decrypt sniffed network traffic.    7.8  High  2017-01-07  2009-12-14  View

Page 14793 of 17672, showing 5 records out of 88360 total, starting on record 73961, ending on 73965

Actions