NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48107 | CVE-2009-0789 | OpenSSL before 0.9.8k on WIN64 and certain other platforms does not properly handle a malformed ASN.1 structure, which allows remote attackers to cause a denial of service (invalid memory access and application crash) by placing this structure in the public key of a certificate, as demonstrated by an RSA public key. | 2 | 5 | Medium | 2017-01-07 | 2016-08-22 | View | |
48363 | CVE-2009-1053 | chaozzDB 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv. | 2 | 5 | Medium | 2017-01-07 | 2009-03-24 | View | |
48619 | CVE-2009-1332 | The Online Help feature in Sun Java System Directory Server 5.2 and Enterprise Edition 5 allows remote attackers to determine the existence of files and directories, and possibly obtain partial contents of files, via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-04-28 | View | |
49387 | CVE-2009-2125 | delete_bug.php in Elvin before 1.2.1 does not require administrative privileges, which allows remote authenticated users to bypass intended access restrictions and delete arbitrary bugs. | 2 | 4 | Medium | 2017-01-07 | 2009-06-23 | View | |
52715 | CVE-2007-0491 | PHP remote file inclusion vulnerability in up.php in Sky GUNNING MySpeach 3.0.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the my_ms[root] parameter, a different vector than CVE-2006-4630. NOTE: Some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 16945 of 17672, showing 5 records out of 88360 total, starting on record 84721, ending on 84725