NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46846 | CVE-2012-5809 | The Groupon Redemptions application for Android does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2015-11-04 | View | |
47358 | CVE-2009-0009 | Unspecified vulnerability in the Pixlet codec in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted movie file that triggers memory corruption. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
47870 | CVE-2009-0538 | Format string vulnerability in Symantec pcAnywhere before 12.5 SP1 allows local users to read and modify arbitrary memory locations, and cause a denial of service (application crash) or possibly have unspecified other impact, via format string specifiers in the pathname of a remote control file (aka .CHF file). | 2 | 4.6 | Medium | 2017-01-07 | 2009-04-01 | View | |
48382 | CVE-2009-1072 | nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option. | 2 | 4.9 | Medium | 2017-01-07 | 2012-03-19 | View | |
48894 | CVE-2009-1625 | Directory traversal vulnerability in index.php in Thickbox Gallery 2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ln parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-13 | View |
Page 17630 of 17672, showing 5 records out of 88360 total, starting on record 88146, ending on 88150