NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 44267 | CVE-2012-2498 | Cisco AnyConnect Secure Mobility Client 3.0 through 3.0.08066 does not ensure that authentication makes use of a legitimate certificate, which allows user-assisted man-in-the-middle attackers to spoof servers via a crafted certificate, aka Bug ID CSCtz29197. | 2 | 4 | Medium | 2017-01-19 | 2012-08-07 | View | |
| 49387 | CVE-2009-2125 | delete_bug.php in Elvin before 1.2.1 does not require administrative privileges, which allows remote authenticated users to bypass intended access restrictions and delete arbitrary bugs. | 2 | 4 | Medium | 2017-01-07 | 2009-06-23 | View | |
| 61163 | CVE-2006-2468 | The WebLogic Server Administration Console in BEA WebLogic Server 8.1 up to SP4 and 7.0 up to SP6 displays the domain name in the Console login form, which allows remote attackers to obtain sensitive information. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 1260 | CVE-2008-1301 | Absolute path traversal vulnerability in system/workplace/admin/workplace/logfileview/logfileViewSettings.jsp in Alkacon OpenCms 7.0.3 and 7.0.4 allows remote authenticated administrators to read arbitrary files via a full pathname in the filePath.0 parameter. | 2 | 4 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 15084 | CVE-2010-3736 | Memory leak in the Relational Data Services component in IBM DB2 UDB 9.5 before FP6a, when the connection concentrator is enabled, allows remote authenticated users to cause a denial of service (heap memory consumption) by using a different code page than the database server. | 2 | 4 | Medium | 2017-01-18 | 2012-01-26 | View |
Page 14716 of 17672, showing 5 records out of 88360 total, starting on record 73576, ending on 73580