NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48173 | CVE-2009-0858 | The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does not constrain offsets in the required manner, which allows remote attackers, with control over a third-party subdomain served by tinydns and axfrdns, to trigger DNS responses containing arbitrary records via crafted zone data for this subdomain. | 2 | 5.8 | Medium | 2017-01-07 | 2009-03-10 | View | |
| 48175 | CVE-2009-0860 | Cross-site scripting (XSS) vulnerability in the web user interface in the login application in NetMRI 3.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to error pages. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-10 | View | |
| 48176 | CVE-2009-0861 | Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via an IRC channel name. NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-10 | View | |
| 48178 | CVE-2009-0863 | SQL injection vulnerability in admin/delete_page.php in S-Cms 1.1 Stable allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-03-10 | View | |
| 48179 | CVE-2009-0864 | S-Cms 1.1 Stable allows remote attackers to bypass authentication and obtain administrative access via an OK value for the login cookie. | 2 | 7.5 | High | 2017-01-07 | 2009-03-10 | View |
Page 2841 of 17672, showing 5 records out of 88360 total, starting on record 14201, ending on 14205