NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49900 | CVE-2009-2659 | The Admin media handler in core/servers/basehttp.py in Django 1.0 and 0.96 does not properly map URL requests to expected "static media files," which allows remote attackers to conduct directory traversal attacks and read arbitrary files via a crafted URL. | 2 | 5 | Medium | 2017-01-07 | 2009-08-12 | View | |
| 49910 | CVE-2009-2669 | A certain debugging component in IBM AIX 5.3 and 6.1 does not properly handle the (1) _LIB_INIT_DBG and (2) _LIB_INIT_DBG_FILE environment variables, which allows local users to gain privileges by leveraging a setuid-root program to create an arbitrary root-owned file with world-writable permissions, related to libC.a (aka the XL C++ runtime library) in AIX 5.3 and libc.a in AIX 6.1. | 2 | 7.2 | High | 2017-01-07 | 2009-08-12 | View | |
| 5399 | CVE-2008-5657 | CRLF injection vulnerability in Quassel Core before 0.3.0.3 allows remote attackers to spoof IRC messages as other users via a crafted CTCP message. | 2 | 7.5 | High | 2017-01-03 | 2009-08-13 | View | |
| 6692 | CVE-2008-6961 | mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1.1.13, when JavaScript is enabled in mail, allows remote attackers to obtain sensitive information about the recipient, or comments in forwarded mail, via script that reads the (1) .documentURI or (2) .textContent DOM properties. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-13 | View | |
| 6693 | CVE-2008-6962 | Avira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE allows local users to execute arbitrary code via a crafted IOCTL request that overwrites a kernel pointer. | 2 | 7.2 | High | 2017-01-03 | 2009-08-13 | View |
Page 3296 of 17672, showing 5 records out of 88360 total, starting on record 16476, ending on 16480