NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
15240  CVE-2010-3905  The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attackers to gain privileges by sending password reset requests for other users.    7.5  High  2017-01-18  2010-12-23  View
15239  CVE-2010-3904  The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls.    7.2  High  2017-01-18  2012-03-19  View
15238  CVE-2010-3903  Unspecified vulnerability in OpenConnect before 2.23 allows remote AnyConnect SSL VPN servers to cause a denial of service (application crash) via a 404 HTTP status code.    Medium  2017-01-18  2010-11-12  View
15237  CVE-2010-3902  OpenConnect before 2.26 places the webvpn cookie value in the debugging output, which might allow remote attackers to obtain sensitive information by reading this output, as demonstrated by output posted to the public openconnect-devel mailing list.    Medium  2017-01-18  2011-04-08  View
15236  CVE-2010-3901  OpenConnect before 2.25 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof arbitrary AnyConnect SSL VPN servers via a crafted server certificate that (1) does not correspond to the server hostname or (2) is presented in circumstances involving a missing --cafile configuration option.    6.4  Medium  2017-01-18  2010-10-14  View

Page 14625 of 17672, showing 5 records out of 88360 total, starting on record 73121, ending on 73125

Actions