NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11790  CVE-2010-0219  Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier for remote attackers to execute arbitrary code by uploading a crafted web service.    10  High  2017-01-18  2013-05-09  View
11789  CVE-2010-0218  ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive information via a DNS query.    Medium  2017-01-18  2016-04-04  View
11788  CVE-2010-0217  Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or Tomcat daemon crash) via a brute-force attack.    5.8  Medium  2017-01-18  2011-09-21  View
11787  CVE-2010-0216  authenticate_ad_setup_finished.cfm in MediaCAST 8 and earlier allows remote attackers to discover usernames and cleartext passwords by reading the error messages returned for requests that use the UserID parameter.    Medium  2017-01-18  2011-09-21  View
11786  CVE-2010-0215  ActiveCollab before 2.3.2 allows remote authenticated users to bypass intended access restrictions, and (1) delete an attachment or (2) subscribe to an object, via a crafted URL.    Medium  2017-01-18  2011-01-11  View

Page 15315 of 17672, showing 5 records out of 88360 total, starting on record 76571, ending on 76575

Actions