NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15851 | CVE-2010-4602 | The Web client in IBM Rational ClearQuest 7.1.1.x before 7.1.1.4 and 7.1.2.x before 7.1.2.1 allows remote authenticated users to bypass "restricted user" limitations, and read arbitrary records, via a modified record number in the URL for a RECORD action, as demonstrated by a modified bookmark. | 2 | 4 | Medium | 2017-01-18 | 2011-01-11 | View | |
| 44007 | CVE-2012-2164 | The Web client in IBM Rational ClearQuest 7.1.x before 7.1.2.7 and 8.x before 8.0.0.3 allows remote authenticated users to bypass intended access restrictions, and use the Site Administration menu to modify system settings, via a parameter-tampering attack. | 2 | 5.5 | Medium | 2017-01-19 | 2012-08-29 | View | |
| 8963 | CVE-2011-2142 | The Web Client Service in IBM Datacap Taskmaster Capture 8.0.1 before FP1 requires a cleartext password, which has unspecified impact and attack vectors. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
| 31366 | CVE-2014-3103 | The Web component in IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | 2 | 5 | Medium | 2017-01-19 | 2014-09-24 | View | |
| 4663 | CVE-2008-4874 | The web component in Philips Electronics VOIP841 DECT Phone with firmware 1.0.4.50 and 1.0.4.80 has a back door "service" account with "service" as its password, which makes it easier for remote attackers to obtain access. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 14920 of 17672, showing 5 records out of 88360 total, starting on record 74596, ending on 74600