NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48692 | CVE-2009-1416 | lib/gnutls_pk.c in libgnutls in GnuTLS 2.5.0 through 2.6.5 generates RSA keys stored in DSA structures, instead of the intended DSA keys, which might allow remote attackers to spoof signatures on certificates or have unspecified other impact by leveraging an invalid DSA key. | 2 | 7.5 | High | 2017-01-07 | 2009-06-10 | View | |
| 48693 | CVE-2009-1417 | gnutls-cli in GnuTLS before 2.6.6 does not verify the activation and expiration times of X.509 certificates, which allows remote attackers to successfully present a certificate that is (1) not yet valid or (2) no longer valid, related to lack of time checks in the _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls_x509, as used by (a) Exim, (b) OpenLDAP, and (c) libsoup. | 2 | 5 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 57676 | CVE-2007-5613 | Cross-site scripting (XSS) vulnerability in Dump Servlet in Mortbay Jetty before 6.1.6rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters and cookies. | 2 | 4.3 | Medium | 2017-01-07 | 2009-06-10 | View | |
| 57677 | CVE-2007-5614 | Mortbay Jetty before 6.1.6rc1 does not properly handle "certain quote sequences" in HTML cookie parameters, which allows remote attackers to hijack browser sessions via unspecified vectors. | 2 | 7.5 | High | 2017-01-07 | 2009-06-10 | View | |
| 57678 | CVE-2007-5615 | CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-06-10 | View |
Page 3129 of 17672, showing 5 records out of 88360 total, starting on record 15641, ending on 15645