NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15240 | CVE-2010-3905 | The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attackers to gain privileges by sending password reset requests for other users. | 2 | 7.5 | High | 2017-01-18 | 2010-12-23 | View | |
| 15239 | CVE-2010-3904 | The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls. | 2 | 7.2 | High | 2017-01-18 | 2012-03-19 | View | |
| 15238 | CVE-2010-3903 | Unspecified vulnerability in OpenConnect before 2.23 allows remote AnyConnect SSL VPN servers to cause a denial of service (application crash) via a 404 HTTP status code. | 2 | 5 | Medium | 2017-01-18 | 2010-11-12 | View | |
| 15237 | CVE-2010-3902 | OpenConnect before 2.26 places the webvpn cookie value in the debugging output, which might allow remote attackers to obtain sensitive information by reading this output, as demonstrated by output posted to the public openconnect-devel mailing list. | 2 | 5 | Medium | 2017-01-18 | 2011-04-08 | View | |
| 15236 | CVE-2010-3901 | OpenConnect before 2.25 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof arbitrary AnyConnect SSL VPN servers via a crafted server certificate that (1) does not correspond to the server hostname or (2) is presented in circumstances involving a missing --cafile configuration option. | 2 | 6.4 | Medium | 2017-01-18 | 2010-10-14 | View |
Page 14625 of 17672, showing 5 records out of 88360 total, starting on record 73121, ending on 73125