NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49167  CVE-2009-1902  The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header name, which triggers a NULL pointer dereference.    7.8  High  2017-01-07  2009-07-15  View
49168  CVE-2009-1903  The PDF XSS protection feature in ModSecurity before 2.5.8 allows remote attackers to cause a denial of service (Apache httpd crash) via a request for a PDF file that does not use the GET method.    4.3  Medium  2017-01-07  2009-07-15  View
5922  CVE-2008-6191  Conductor.exe in Intrinsic Swimage Encore before 5.0.1.21 contains a hardcoded password, which might allow local users to decrypt certain .bin files. NOTE: it is not clear whether this issue crosses privilege boundaries.    2.1  Low  2017-01-03  2009-07-15  View
2084  CVE-2008-2154  IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 provides an INSTALL_JAR (aka sqlj.install_jar) procedure, which allows remote authenticated users to create or overwrite arbitrary files via unspecified calls.    Medium  2017-01-03  2009-07-15  View
5156  CVE-2008-5378  arb-kill in arb 0.0.20071207.1 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/arb_pids_*_* temporary file.    6.9  Medium  2017-01-03  2009-07-15  View

Page 3217 of 17672, showing 5 records out of 88360 total, starting on record 16081, ending on 16085

Actions