NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48176  CVE-2009-0861  Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via an IRC channel name. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-07  2009-03-10  View
48178  CVE-2009-0863  SQL injection vulnerability in admin/delete_page.php in S-Cms 1.1 Stable allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2009-03-10  View
48179  CVE-2009-0864  S-Cms 1.1 Stable allows remote attackers to bypass authentication and obtain administrative access via an OK value for the login cookie.    7.5  High  2017-01-07  2009-03-10  View
48180  CVE-2009-0865  Directory traversal vulnerability in the SnapShotToFile method in the GeoVision LiveX (aka LiveX_v8200) ActiveX control 8.1.2 and 8.2.0 in LIVEX_~1.OCX allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument, possibly involving the PlayX and SnapShotX methods.    8.8  High  2017-01-07  2009-03-10  View
48181  CVE-2009-0866  pHNews Alpha 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for extra/genbackup.php.    Medium  2017-01-07  2009-03-10  View

Page 14833 of 17672, showing 5 records out of 88360 total, starting on record 74161, ending on 74165

Actions