NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15840 | CVE-2010-4591 | The Connection Manager in IBM Lotus Mobile Connect (LMC) before 6.1.4, when HTTP Access Services (HTTP-AS) is enabled, does not delete LTPA tokens in response to use of the iNotes Logoff button, which might allow physically proximate attackers to obtain access via an unattended client, related to a cookie domain mismatch. | 2 | 4.4 | Medium | 2017-01-18 | 2011-01-11 | View | |
| 15839 | CVE-2010-4590 | Cross-site scripting (XSS) vulnerability in HTTP Access Services (HTTP-AS) in the Connection Manager in IBM Lotus Mobile Connect (LMC) before 6.1.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-18 | 2010-12-27 | View | |
| 15838 | CVE-2010-4589 | Cross-site scripting (XSS) vulnerability in IBM ENOVIA 6 allows remote attackers to inject arbitrary web script or HTML via vectors related to the emxFramework.FilterParameterPattern property. | 2 | 4.3 | Medium | 2017-01-18 | 2011-01-11 | View | |
| 15837 | CVE-2010-4588 | The WBEMSingleView.ocx ActiveX control 1.50.1131.0 in Microsoft WMI Administrative Tools 1.1 and earlier allows remote attackers to execute arbitrary code via a crafted argument to the ReleaseContext method, a different vector than CVE-2010-3973, possibly an untrusted pointer dereference. | 2 | 9.3 | High | 2017-01-18 | 2011-01-19 | View | |
| 15836 | CVE-2010-4587 | Opera before 11.00 on Windows does not properly implement the Insecure Third Party Module warning message, which might make it easier for user-assisted remote attackers to have an unspecified impact via a crafted module. | 2 | 9.3 | High | 2017-01-18 | 2011-01-12 | View |
Page 14505 of 17672, showing 5 records out of 88360 total, starting on record 72521, ending on 72525