NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3771 | CVE-2008-3909 | The administration application in Django 0.91, 0.95, and 0.96 stores unauthenticated HTTP POST requests and processes them after successful authentication occurs, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and delete or modify data via unspecified requests. | 2 | 5.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
3772 | CVE-2008-3910 | dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact. | 2 | 10 | High | 2017-01-03 | 2008-10-03 | View | |
3773 | CVE-2008-3911 | The proc_do_xprt function in net/sunrpc/sysctl.c in the Linux kernel 2.6.26.3 does not check the length of a certain buffer obtained from userspace, which allows local users to overflow a stack-based buffer and have unspecified other impact via a crafted read system call for the /proc/sys/sunrpc/transports file. | 2 | 7.2 | High | 2017-01-03 | 2012-03-19 | View | |
3774 | CVE-2008-3912 | libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an out-of-memory condition. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
3775 | CVE-2008-3913 | Multiple memory leaks in freshclam/manager.c in ClamAV before 0.94 might allow attackers to cause a denial of service (memory consumption) via unspecified vectors related to "error handling logic". | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 755 of 17672, showing 5 records out of 88360 total, starting on record 3771, ending on 3775