NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 14808 | CVE-2010-3423 | SQL injection vulnerability in the Yr Weatherdata module for Drupal 6.x before 6.x-1.6 allows remote attackers to execute arbitrary SQL commands via the sorting method. | 2 | 7.5 | High | 2017-01-18 | 2010-09-17 | View | |
| 80344 | CVE-2002-1391 | Buffer overflow in cnd-program for mgetty before 1.1.29 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a Caller ID string with a long CallerName argument. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
| 15064 | CVE-2010-3707 | plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving more specific entries that occur after less specific entries, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox. | 2 | 5.5 | Medium | 2017-01-18 | 2011-08-26 | View | |
| 80600 | CVE-2002-1647 | The quick login feature in Slash Slashcode does not redirect the user to an alternate URL when the wrong password is provided, which makes it easier for remote web sites to guess the proper passwords by reading the username and password from the Referrer URL. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
| 15320 | CVE-2010-3992 | Unspecified vulnerability in HP Insight Control Server Migration before 6.2 allows remote authenticated users to gain privileges via unknown vectors. | 2 | 9 | High | 2017-01-18 | 2010-11-11 | View |
Page 14973 of 17672, showing 5 records out of 88360 total, starting on record 74861, ending on 74865