NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 11960 | CVE-2010-0403 | Directory traversal vulnerability in about.php in phpGroupWare (phpgw) before 0.9.16.016 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the app parameter. | 2 | 6.8 | Medium | 2017-01-18 | 2010-05-26 | View | |
| 11959 | CVE-2010-0402 | OpenTTD before 1.0.1 does not properly validate index values of certain items, which allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted in-game command. | 2 | 6.5 | Medium | 2017-01-18 | 2010-05-05 | View | |
| 11958 | CVE-2010-0401 | OpenTTD before 1.0.1 accepts a company password for authentication in response to a request for the server password, which allows remote authenticated users to bypass intended access restrictions or cause a denial of service (daemon crash) by sending a company password packet. | 2 | 6.5 | Medium | 2017-01-18 | 2010-05-11 | View | |
| 11957 | CVE-2010-0400 | SQL injection vulnerability in lib/user.php in mahara 1.0.4 allows remote attackers to execute arbitrary SQL commands via a username. | 2 | 7.5 | High | 2017-01-18 | 2010-04-08 | View | |
| 11956 | CVE-2010-0397 | The xmlrpc extension in PHP 5.3.1 does not properly handle a missing methodName element in the first argument to the xmlrpc_decode_request function, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) and possibly have unspecified other impact via a crafted argument. | 2 | 5 | Medium | 2017-01-18 | 2010-12-10 | View |
Page 15281 of 17672, showing 5 records out of 88360 total, starting on record 76401, ending on 76405