NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3771  CVE-2008-3909  The administration application in Django 0.91, 0.95, and 0.96 stores unauthenticated HTTP POST requests and processes them after successful authentication occurs, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and delete or modify data via unspecified requests.    5.8  Medium  2017-01-03  2011-03-07  View
3772  CVE-2008-3910  dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact.    10  High  2017-01-03  2008-10-03  View
3773  CVE-2008-3911  The proc_do_xprt function in net/sunrpc/sysctl.c in the Linux kernel 2.6.26.3 does not check the length of a certain buffer obtained from userspace, which allows local users to overflow a stack-based buffer and have unspecified other impact via a crafted read system call for the /proc/sys/sunrpc/transports file.    7.2  High  2017-01-03  2012-03-19  View
3774  CVE-2008-3912  libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an out-of-memory condition.    Medium  2017-01-03  2011-03-07  View
3775  CVE-2008-3913  Multiple memory leaks in freshclam/manager.c in ClamAV before 0.94 might allow attackers to cause a denial of service (memory consumption) via unspecified vectors related to "error handling logic".    Medium  2017-01-03  2011-03-07  View

Page 755 of 17672, showing 5 records out of 88360 total, starting on record 3771, ending on 3775

Actions