NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48108 | CVE-2009-0790 | The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD. | 2 | 5 | Medium | 2017-01-07 | 2010-08-21 | View | |
48620 | CVE-2009-1333 | Cross-site scripting (XSS) vulnerability in refresh_rate.htm in the web interface on the HP Deskjet 6840 printer with firmware XF1M131A allows remote attackers to inject arbitrary web script or HTML via the POST request body. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-28 | View | |
48876 | CVE-2009-1607 | Cross-site scripting (XSS) vulnerability in the administrator panel in phpForm.net LinkBase 2.0 allows remote attackers to inject arbitrary web script or HTML via the username in a registration, which is not properly handled when the administrator accesses the Users menu. | 2 | 4.3 | Medium | 2017-01-07 | 2009-05-12 | View | |
49388 | CVE-2009-2126 | Cross-site scripting (XSS) vulnerability in close_bug.php in Elvin before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the title (aka subject) field. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-22 | View | |
49644 | CVE-2009-2397 | Directory traversal vulnerability in download.php in Audio Article Directory allows remote attackers to read arbitrary files via directory traversal sequences in the file parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-07-09 | View |
Page 16977 of 17672, showing 5 records out of 88360 total, starting on record 84881, ending on 84885