NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15405 | CVE-2010-4097 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Aardvark Topsites PHP 5.2.0 and 5.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) mail, (2) title, (3) u, and (4) url parameters. NOTE: the q parameter is already covered by CVE-2009-2302. | 2 | 4.3 | Medium | 2017-01-18 | 2010-10-28 | View | |
| 15404 | CVE-2010-4096 | share/ma/keys_for_user in Monkeysphere 0.31 and 0.32 allows local users to execute arbitrary code via unknown manipulations related to the "monkeysphere-authentication keys-for-user" command. | 2 | 4.6 | Medium | 2017-01-18 | 2011-01-04 | View | |
| 15403 | CVE-2010-4095 | Directory traversal vulnerability in the FTP client in Serengeti Systems Incorporated Robo-FTP 3.7.3, and probably other versions before 3.7.5, allows remote FTP servers to write arbitrary files via a .. (dot dot) in a filename in a server response. | 2 | 9.3 | High | 2017-01-18 | 2010-10-28 | View | |
| 15402 | CVE-2010-4094 | The Tomcat server in IBM Rational Quality Manager and Rational Test Lab Manager has a default password for the ADMIN account, which makes it easier for remote attackers to execute arbitrary code by leveraging access to the manager role. NOTE: this might overlap CVE-2009-3548. | 2 | 5 | Medium | 2017-01-18 | 2011-01-11 | View | |
| 15401 | CVE-2010-4093 | Adobe Shockwave Player before 11.5.9.620 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-0555, CVE-2010-4187, CVE-2010-4190, CVE-2010-4191, CVE-2010-4192, and CVE-2010-4306. | 2 | 9.3 | High | 2017-01-18 | 2011-02-17 | View |
Page 14592 of 17672, showing 5 records out of 88360 total, starting on record 72956, ending on 72960