NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49907  CVE-2009-2666  socket.c in fetchmail before 6.3.11 does not properly handle a "" character in a domain name in the subject"s Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.    6.4  Medium  2017-01-07  2011-02-15  View
50163  CVE-2009-2944  Incomplete blacklist vulnerability in the teximg plugin in ikiwiki before 3.1415926 and 2.x before 2.53.4 allows context-dependent attackers to read arbitrary files via crafted TeX commands.    Medium  2017-01-07  2013-01-22  View
50419  CVE-2009-3214  Multiple stack-based buffer overflows in Photodex ProShow Gold 4.0.2549 allow remote attackers to execute arbitrary code via a crafted Slideshow project (.psh) file, related to the (1) cell[n].images[m].image and (2) cell[n].sound.file fields.    9.3  High  2017-01-07  2009-09-17  View
50675  CVE-2009-3474  OpenSAML 2.x before 2.2.1 and XMLTooling 1.x before 1.2.1, as used by Internet2 Shibboleth Service Provider 2.x before 2.2.1, do not follow the KeyDescriptor element"s Use attribute, which allows remote attackers to use a certificate for both signing and encryption when it is designated for just one purpose, potentially weakening the intended security application of the certificate.    7.5  High  2017-01-07  2009-09-30  View
50931  CVE-2009-3751  Cross-site scripting (XSS) vulnerability in home.php in Opial 1.0 allows remote attackers to inject arbitrary web script or HTML via the genres_parent parameter.    4.3  Medium  2017-01-07  2009-10-23  View

Page 16938 of 17672, showing 5 records out of 88360 total, starting on record 84686, ending on 84690

Actions