NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46862  CVE-2012-5825  Tweepy does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the Python httplib library.    5.8  Medium  2017-01-19  2012-11-19  View
47118  CVE-2012-6336  The Missing Device feature in Lookout allows physically proximate attackers to provide arbitrary location data via a "commonly available simple GPS location spoofer."    3.3  Low  2017-01-19  2013-01-08  View
47374  CVE-2009-0025  BIND 9.6.0, 9.5.1, 9.5.0, 9.4.3, and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.    6.8  Medium  2017-01-07  2016-04-04  View
47630  CVE-2009-0296  SQL injection vulnerability in shop_display_products.php in Script Toko Online 5.01 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.    7.5  High  2017-01-07  2009-02-05  View
47886  CVE-2009-0555  Microsoft Windows Media Runtime, as used in DirectShow WMA Voice Codec, Windows Media Audio Voice Decoder, and Audio Compression Manager (ACM), does not properly process Advanced Systems Format (ASF) files, which allows remote attackers to execute arbitrary code via a crafted audio file that uses the Windows Media Speech codec, aka "Windows Media Runtime Voice Sample Rate Vulnerability."    9.3  High  2017-01-07  2010-08-21  View

Page 3087 of 17672, showing 5 records out of 88360 total, starting on record 15431, ending on 15435

Actions