NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48691 | CVE-2009-1415 | lib/pk-libgcrypt.c in libgnutls in GnuTLS before 2.6.6 does not properly handle invalid DSA signatures, which allows remote attackers to cause a denial of service (application crash) and possibly have unspecified other impact via a malformed DSA key that triggers a (1) free of an uninitialized pointer or (2) double free. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-10 | View | |
49203 | CVE-2009-1941 | PAD Site Scripts 3.6 stores sensitive information under the web document root with insufficient access control, which allows remote attackers to download the database and obtain sensitive information via a direct request for dbbackup.txt. | 2 | 5 | Medium | 2017-01-07 | 2009-06-08 | View | |
49459 | CVE-2009-2197 | Apple Safari before 9.1 allows remote attackers to spoof the user interface via a web page that places text in a crafted context, leading to unintended use of that text within a Safari dialog. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-23 | View | |
49715 | CVE-2009-2470 | Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to cause a denial of service (data stream corruption) via a long domain name in a reply. | 2 | 5 | Medium | 2017-01-07 | 2010-08-21 | View | |
49971 | CVE-2009-2738 | Cross-site request forgery (CSRF) vulnerability in the WebGUI in FreeNAS before 0.7RC1 allows remote attackers to hijack the authentication of users for unspecified requests via unknown vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2009-08-18 | View |
Page 1861 of 17672, showing 5 records out of 88360 total, starting on record 9301, ending on 9305