NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48107  CVE-2009-0789  OpenSSL before 0.9.8k on WIN64 and certain other platforms does not properly handle a malformed ASN.1 structure, which allows remote attackers to cause a denial of service (invalid memory access and application crash) by placing this structure in the public key of a certificate, as demonstrated by an RSA public key.    Medium  2017-01-07  2016-08-22  View
48363  CVE-2009-1053  chaozzDB 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv.    Medium  2017-01-07  2009-03-24  View
48619  CVE-2009-1332  The Online Help feature in Sun Java System Directory Server 5.2 and Enterprise Edition 5 allows remote attackers to determine the existence of files and directories, and possibly obtain partial contents of files, via unspecified vectors.    Medium  2017-01-07  2009-04-28  View
49387  CVE-2009-2125  delete_bug.php in Elvin before 1.2.1 does not require administrative privileges, which allows remote authenticated users to bypass intended access restrictions and delete arbitrary bugs.    Medium  2017-01-07  2009-06-23  View
52715  CVE-2007-0491  PHP remote file inclusion vulnerability in up.php in Sky GUNNING MySpeach 3.0.6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the my_ms[root] parameter, a different vector than CVE-2006-4630. NOTE: Some of these details are obtained from third party information.    6.8  Medium  2017-01-07  2011-03-07  View

Page 16945 of 17672, showing 5 records out of 88360 total, starting on record 84721, ending on 84725

Actions