NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
39450 | CVE-2013-3709 | WebYaST 1.3 uses weak permissions for config/initializers/secret_token.rb, which allows local users to gain privileges by reading the Rails secret token from this file. | 2 | 7.2 | High | 2017-01-18 | 2014-01-13 | View | |
41242 | CVE-2013-6041 | index.php in Softaculous Webuzo before 2.1.4 allows remote attackers to execute arbitrary commands via shell metacharacters in a SOFTCookies sid cookie within a login action. | 2 | 7.5 | High | 2017-01-18 | 2015-01-08 | View | |
42266 | CVE-2012-0123 | Unspecified vulnerability in HP Data Protector Express (aka DPX) 5.0.00 before build 59287 and 6.0.00 before build 11974 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1498. | 2 | 10 | High | 2017-01-19 | 2012-03-14 | View | |
42778 | CVE-2012-0691 | CA License (aka CA Licensing) before 1.90.03 does not properly restrict system commands, which allows local users to gain privileges via unspecified vectors. | 2 | 7.2 | High | 2017-01-19 | 2013-04-18 | View | |
43034 | CVE-2012-0999 | SQL injection vulnerability in modules/news/rss.php in LEPTON before 1.1.4 allows remote attackers to execute arbitrary SQL commands via the group_id parameter. | 2 | 7.5 | High | 2017-01-19 | 2012-02-24 | View |
Page 1069 of 17672, showing 5 records out of 88360 total, starting on record 5341, ending on 5345