NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47063  CVE-2012-6117  Aeolus Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for /var/log/aeolus-configserver/configserver.log, which allows local users to read plaintext passwords by reading the log file.    2.1  Low  2017-01-19  2013-03-18  View
47319  CVE-2012-6644  Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3) groups.php, or (4) videos.php; (5) query parameter to search_result.php; or (6) type parameter to view_collection.php or (7) view_item.php.    4.3  Medium  2017-01-19  2016-12-21  View
47575  CVE-2009-0241  Stack-based buffer overflow in the process_path function in gmetad/server.c in Ganglia 3.1.1 allows remote attackers to cause a denial of service (crash) via a request to the gmetad service with a long pathname.    7.5  High  2017-01-07  2009-06-13  View
47831  CVE-2009-0499  Cross-site request forgery (CSRF) vulnerability in the forum code in Moodle 1.7 before 1.7.7, 1.8 before 1.8.8, and 1.9 before 1.9.4 allows remote attackers to delete unauthorized forum posts via a link or IMG tag to post.php.    6.4  Medium  2017-01-07  2009-04-01  View
48087  CVE-2009-0768  SQL injection vulnerability in forumhop.php in YapBB 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the forumID parameter in a next action.    7.5  High  2017-01-07  2009-06-17  View

Page 14936 of 17672, showing 5 records out of 88360 total, starting on record 74676, ending on 74680

Actions