NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48126 | CVE-2009-0809 | The Web Editor in Dassault Systemes ENOVIA SmarTeam V5 before Release 18 Service Pack 8, and possibly CATIA and other products, allows remote authenticated users to read the profile card of an object in the document class via a link that is sent from the owner of the document object. | 2 | 3.5 | Low | 2017-01-07 | 2009-07-22 | View | |
| 48382 | CVE-2009-1072 | nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option. | 2 | 4.9 | Medium | 2017-01-07 | 2012-03-19 | View | |
| 48638 | CVE-2009-1352 | Stack-based buffer overflow in Dawningsoft PowerCHM 5.7 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an HTML file with a link to a long URL, as demonstrated by a .rar URL. | 2 | 9.3 | High | 2017-01-07 | 2009-04-21 | View | |
| 48894 | CVE-2009-1625 | Directory traversal vulnerability in index.php in Thickbox Gallery 2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ln parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-13 | View | |
| 49150 | CVE-2009-1885 | Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors involving nested parentheses and invalid byte values in "simply nested DTD structures," as demonstrated by the Codenomicon XML fuzzing framework. | 2 | 4.3 | Medium | 2017-01-07 | 2009-09-02 | View |
Page 15396 of 17672, showing 5 records out of 88360 total, starting on record 76976, ending on 76980