NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 11790 | CVE-2010-0219 | Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier for remote attackers to execute arbitrary code by uploading a crafted web service. | 2 | 10 | High | 2017-01-18 | 2013-05-09 | View | |
| 11789 | CVE-2010-0218 | ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive information via a DNS query. | 2 | 5 | Medium | 2017-01-18 | 2016-04-04 | View | |
| 11788 | CVE-2010-0217 | Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or Tomcat daemon crash) via a brute-force attack. | 2 | 5.8 | Medium | 2017-01-18 | 2011-09-21 | View | |
| 11787 | CVE-2010-0216 | authenticate_ad_setup_finished.cfm in MediaCAST 8 and earlier allows remote attackers to discover usernames and cleartext passwords by reading the error messages returned for requests that use the UserID parameter. | 2 | 5 | Medium | 2017-01-18 | 2011-09-21 | View | |
| 11786 | CVE-2010-0215 | ActiveCollab before 2.3.2 allows remote authenticated users to bypass intended access restrictions, and (1) delete an attachment or (2) subscribe to an object, via a crafted URL. | 2 | 6 | Medium | 2017-01-18 | 2011-01-11 | View |
Page 15315 of 17672, showing 5 records out of 88360 total, starting on record 76571, ending on 76575