NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6177 | CVE-2008-6446 | Static code injection vulnerability in the Guestbook component in CMS MAXSITE allows remote attackers to inject arbitrary PHP code into the guestbook via the message parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-10 | View | |
| 48164 | CVE-2009-0849 | Stack-based buffer overflow in the DtbClsLogin function in NovaStor NovaNET 12 allows remote attackers to (1) execute arbitrary code on Linux platforms via a long username field during backup domain authentication, related to libnnlindtb.so; or (2) cause a denial of service (daemon crash) on Windows platforms via a long username field during backup domain authentication, related to nnwindtb.dll. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2009-03-10 | View | |
| 48167 | CVE-2009-0852 | showme.php in CelerBB 0.0.2 allows remote attackers to obtain "reserved information" via the user parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-03-10 | View | |
| 48173 | CVE-2009-0858 | The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does not constrain offsets in the required manner, which allows remote attackers, with control over a third-party subdomain served by tinydns and axfrdns, to trigger DNS responses containing arbitrary records via crafted zone data for this subdomain. | 2 | 5.8 | Medium | 2017-01-07 | 2009-03-10 | View | |
| 48175 | CVE-2009-0860 | Cross-site scripting (XSS) vulnerability in the web user interface in the login application in NetMRI 3.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to error pages. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-10 | View |
Page 14832 of 17672, showing 5 records out of 88360 total, starting on record 74156, ending on 74160