NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 21150 | CVE-2016-6370 | Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote authenticated users to read arbitrary files via a crafted pathname in an HTTP request, aka Bug ID CSCuz27255. | 2 | 4 | Medium | 2017-01-19 | 2016-12-12 | View | |
| 26526 | CVE-2015-5341 | mod_scorm in Moodle through 2.6.11, 2.7.x before 2.7.11, 2.8.x before 2.8.9, and 2.9.x before 2.9.3 mishandles availability dates, which allows remote authenticated users to bypass intended access restrictions and read SCORM contents via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2016-03-02 | View | |
| 30622 | CVE-2014-2145 | Directory traversal vulnerability in the messaging API in Cisco Unity Connection allows remote authenticated users to read arbitrary files via vectors related to unenforced access constraints for .wav files and the audio/x-wav MIME type, aka Bug ID CSCun91071. | 2 | 4 | Medium | 2017-01-19 | 2015-09-16 | View | |
| 42398 | CVE-2012-0263 | monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users to obtain sensitive information such as database and user credentials via error messages that are triggered by (1) a malformed hoststatustypes parameter to status/service/all or (2) a crafted request to config. | 2 | 4 | Medium | 2017-01-19 | 2014-01-02 | View | |
| 52126 | CVE-2009-5012 | ftpserver.py in pyftpdlib before 0.5.2 does not require the l permission for the MLST command, which allows remote authenticated users to bypass intended access restrictions and list the root directory via an FTP session. | 2 | 4 | Medium | 2017-01-07 | 2010-10-20 | View |
Page 14602 of 17672, showing 5 records out of 88360 total, starting on record 73006, ending on 73010