NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49167 | CVE-2009-1902 | The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header name, which triggers a NULL pointer dereference. | 2 | 7.8 | High | 2017-01-07 | 2009-07-15 | View | |
| 49168 | CVE-2009-1903 | The PDF XSS protection feature in ModSecurity before 2.5.8 allows remote attackers to cause a denial of service (Apache httpd crash) via a request for a PDF file that does not use the GET method. | 2 | 4.3 | Medium | 2017-01-07 | 2009-07-15 | View | |
| 5922 | CVE-2008-6191 | Conductor.exe in Intrinsic Swimage Encore before 5.0.1.21 contains a hardcoded password, which might allow local users to decrypt certain .bin files. NOTE: it is not clear whether this issue crosses privilege boundaries. | 2 | 2.1 | Low | 2017-01-03 | 2009-07-15 | View | |
| 2084 | CVE-2008-2154 | IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 provides an INSTALL_JAR (aka sqlj.install_jar) procedure, which allows remote authenticated users to create or overwrite arbitrary files via unspecified calls. | 2 | 6 | Medium | 2017-01-03 | 2009-07-15 | View | |
| 5156 | CVE-2008-5378 | arb-kill in arb 0.0.20071207.1 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/arb_pids_*_* temporary file. | 2 | 6.9 | Medium | 2017-01-03 | 2009-07-15 | View |
Page 3217 of 17672, showing 5 records out of 88360 total, starting on record 16081, ending on 16085