NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48173  CVE-2009-0858  The response_addname function in response.c in Daniel J. Bernstein djbdns 1.05 and earlier does not constrain offsets in the required manner, which allows remote attackers, with control over a third-party subdomain served by tinydns and axfrdns, to trigger DNS responses containing arbitrary records via crafted zone data for this subdomain.    5.8  Medium  2017-01-07  2009-03-10  View
48175  CVE-2009-0860  Cross-site scripting (XSS) vulnerability in the web user interface in the login application in NetMRI 3.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to error pages.    4.3  Medium  2017-01-07  2009-03-10  View
48176  CVE-2009-0861  Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via an IRC channel name. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-07  2009-03-10  View
48178  CVE-2009-0863  SQL injection vulnerability in admin/delete_page.php in S-Cms 1.1 Stable allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2009-03-10  View
48179  CVE-2009-0864  S-Cms 1.1 Stable allows remote attackers to bypass authentication and obtain administrative access via an OK value for the login cookie.    7.5  High  2017-01-07  2009-03-10  View

Page 2841 of 17672, showing 5 records out of 88360 total, starting on record 14201, ending on 14205

Actions