NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49567 | CVE-2009-2319 | The default configuration of the Wi-Fi component on the Axesstel MV 410R does not use encryption, which makes it easier for remote attackers to obtain sensitive information by sniffing the network. | 2 | 5 | Medium | 2017-01-07 | 2009-07-06 | View | |
| 49570 | CVE-2009-2322 | Cross-site scripting (XSS) vulnerability in cgi-bin/sysconf.cgi on the Axesstel MV 410R allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-06 | View | |
| 49571 | CVE-2009-2323 | The web interface on the Axesstel MV 410R redirects users back to the referring page after execution of some CGI scripts, which makes it easier for remote attackers to avoid detection of cross-site request forgery (CSRF) attacks, as demonstrated by a redirect from the cgi-bin/wireless.cgi script. | 2 | 5.8 | Medium | 2017-01-07 | 2009-07-06 | View | |
| 49573 | CVE-2009-2325 | Directory traversal vulnerability in index.php in Clicknet CMS 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the side parameter. | 2 | 5 | Medium | 2017-01-07 | 2009-07-06 | View | |
| 49576 | CVE-2009-2328 | admin/edit_user.php in KerviNet Forum 1.1 and earlier does not require administrative authentication, which allows remote attackers to delete arbitrary accounts and conduct SQL injection attacks via the del_user_id parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-07-06 | View |
Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970