NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46595  CVE-2012-5458  VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a crafted application.    8.3  High  2017-01-19  2012-11-19  View
47875  CVE-2009-0544  Buffer overflow in the PyCrypto ARC2 module 2.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large ARC2 key length.    10  High  2017-01-07  2009-05-15  View
49155  CVE-2009-1890  The stream_reqbody_cl function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server before 2.3.3, when a reverse proxy is configured, does not properly handle an amount of streamed data that exceeds the Content-Length value, which allows remote attackers to cause a denial of service (CPU consumption) via crafted requests.    7.1  High  2017-01-07  2013-10-10  View
49667  CVE-2009-2422  The example code for the digest authentication functionality (http_authentication.rb) in Ruby on Rails before 2.3.3 defines an authenticate_or_request_with_http_digest block that returns nil instead of false when the user does not exist, which allows context-dependent attackers to bypass authentication for applications that are derived from this example by sending an invalid username without a password.    7.5  High  2017-01-07  2010-04-01  View
49923  CVE-2009-2682  Unspecified vulnerability in Role-Based Access Control (RBAC) in HP HP-UX B.11.23 and B.11.31 allows local users to bypass intended access restrictions via unknown vectors.    7.2  High  2017-01-07  2010-08-21  View

Page 446 of 17672, showing 5 records out of 88360 total, starting on record 2226, ending on 2230

Actions