NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48644 | CVE-2009-1358 | apt-get in apt before 0.7.21 does not check for the correct error code from gpgv, which causes apt to treat a repository as valid even when it has been signed with a key that has been revoked or expired, which might allow remote attackers to trick apt into installing malicious repositories. | 2 | 10 | High | 2017-01-07 | 2009-05-19 | View | |
48900 | CVE-2009-1631 | The Mailer component in Evolution 2.26.1 and earlier uses world-readable permissions for the .evolution directory, and certain directories and files under .evolution/ related to local mail, which allows local users to obtain sensitive information by reading these files. | 2 | 2.1 | Low | 2017-01-07 | 2009-05-23 | View | |
49156 | CVE-2009-1891 | The mod_deflate module in Apache httpd 2.2.11 and earlier compresses large files until completion even after the associated network connection is closed, which allows remote attackers to cause a denial of service (CPU consumption). | 2 | 7.1 | High | 2017-01-07 | 2011-09-06 | View | |
49412 | CVE-2009-2150 | Multiple cross-site request forgery (CSRF) vulnerabilities in Campus Virtual-LMS allow (1) remote attackers to hijack the authentication of arbitrary users for requests that terminate a session via login/logout.php, and might allow remote attackers to hijack the authentication of certain users via a (2) ADD or (3) DELETE action to enrolments/step2.php. | 2 | 6.8 | Medium | 2017-01-07 | 2009-06-23 | View | |
49668 | CVE-2009-2423 | SQL injection vulnerability in category.php in Ebay Clone 2009 allows remote attackers to execute arbitrary SQL commands via the cate_id parameter in a list action. | 2 | 7.5 | High | 2017-01-07 | 2009-07-13 | View |
Page 678 of 17672, showing 5 records out of 88360 total, starting on record 3386, ending on 3390