NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48396 | CVE-2009-1086 | Heap-based buffer overflow in the ldns_rr_new_frm_str_internal function in ldns 1.4.x allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a DNS resource record (RR) with a long (1) class field (clas variable) and possibly (2) TTL field. | 2 | 6.4 | Medium | 2017-01-07 | 2009-05-15 | View | |
48652 | CVE-2009-1367 | Cross-site scripting (XSS) vulnerability in index.php in moziloCMS 1.11 allows remote attackers to inject arbitrary web script or HTML via the query parameter in search action, a different issue than CVE-2008-6127.2a. | 2 | 4.3 | Medium | 2017-01-07 | 2009-04-23 | View | |
49676 | CVE-2009-2431 | WordPress 2.7.1 places the username of a post"s author in an HTML comment, which allows remote attackers to obtain sensitive information by reading the HTML source. | 2 | 5 | Medium | 2017-01-07 | 2009-07-13 | View | |
50956 | CVE-2009-3787 | files.php in Vivvo CMS 4.1.5.1 allows remote attackers to conduct directory traversal attacks and read arbitrary files via the file parameter with "logs/" in between two . (dot) characters, which is filtered into a "../" sequence. | 2 | 5 | Medium | 2017-01-07 | 2009-10-27 | View | |
51468 | CVE-2009-4345 | Cross-site scripting (XSS) vulnerability in the vShoutbox (vshoutbox) extension 0.0.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-12-18 | View |
Page 464 of 17672, showing 5 records out of 88360 total, starting on record 2316, ending on 2320