NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
45172 | CVE-2012-3587 | APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install Trojan horse packages via a man-in-the-middle (MITM) attack. | 2 | 2.6 | Low | 2017-01-19 | 2012-06-26 | View | |
43000 | CVE-2012-0954 | APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install altered packages via a man-in-the-middle (MITM) attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3587. | 2 | 2.6 | Low | 2017-01-19 | 2012-06-26 | View | |
48587 | CVE-2009-1300 | apt 0.7.20 does not check when the date command returns an "invalid date" error, which can prevent apt from loading security updates in time zones for which DST occurs at midnight. | 2 | 10 | High | 2017-01-07 | 2009-05-19 | View | |
74434 | CVE-2003-1364 | Aprelium Technologies Abyss Web Server 1.1.2, and possibly other versions before 1.1.4, allows remote attackers to cause a denial of service (crash) via an HTTP GET message with empty (1) Connection or (2) Range fields. | 2 | 8.5 | High | 2017-01-03 | 2008-09-05 | View | |
79549 | CVE-2002-0544 | Aprelium Abyss Web Server (abyssws) before 1.0.3 stores the administrative console password in plaintext in the abyss.conf file, which allows local users with access to the file to gain privileges. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View |
Page 16309 of 17672, showing 5 records out of 88360 total, starting on record 81541, ending on 81545