NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49567  CVE-2009-2319  The default configuration of the Wi-Fi component on the Axesstel MV 410R does not use encryption, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.    Medium  2017-01-07  2009-07-06  View
49570  CVE-2009-2322  Cross-site scripting (XSS) vulnerability in cgi-bin/sysconf.cgi on the Axesstel MV 410R allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-07  2009-07-06  View
49571  CVE-2009-2323  The web interface on the Axesstel MV 410R redirects users back to the referring page after execution of some CGI scripts, which makes it easier for remote attackers to avoid detection of cross-site request forgery (CSRF) attacks, as demonstrated by a redirect from the cgi-bin/wireless.cgi script.    5.8  Medium  2017-01-07  2009-07-06  View
49573  CVE-2009-2325  Directory traversal vulnerability in index.php in Clicknet CMS 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the side parameter.    Medium  2017-01-07  2009-07-06  View
49576  CVE-2009-2328  admin/edit_user.php in KerviNet Forum 1.1 and earlier does not require administrative authentication, which allows remote attackers to delete arbitrary accounts and conduct SQL injection attacks via the del_user_id parameter.    7.5  High  2017-01-07  2009-07-06  View

Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970

Actions