NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
14808  CVE-2010-3423  SQL injection vulnerability in the Yr Weatherdata module for Drupal 6.x before 6.x-1.6 allows remote attackers to execute arbitrary SQL commands via the sorting method.    7.5  High  2017-01-18  2010-09-17  View
80344  CVE-2002-1391  Buffer overflow in cnd-program for mgetty before 1.1.29 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a Caller ID string with a long CallerName argument.    7.5  High  2017-01-05  2016-10-17  View
15064  CVE-2010-3707  plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving more specific entries that occur after less specific entries, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox.    5.5  Medium  2017-01-18  2011-08-26  View
80600  CVE-2002-1647  The quick login feature in Slash Slashcode does not redirect the user to an alternate URL when the wrong password is provided, which makes it easier for remote web sites to guess the proper passwords by reading the username and password from the Referrer URL.    Medium  2017-01-05  2016-10-17  View
15320  CVE-2010-3992  Unspecified vulnerability in HP Insight Control Server Migration before 6.2 allows remote authenticated users to gain privileges via unknown vectors.    High  2017-01-18  2010-11-11  View

Page 14973 of 17672, showing 5 records out of 88360 total, starting on record 74861, ending on 74865

Actions