NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
10886 | CVE-2011-4459 | Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 does not properly disable groups, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging a group membership. | 2 | 3.5 | Low | 2017-01-07 | 2012-09-28 | View | |
7148 | CVE-2011-0009 | Best Practical Solutions RT 3.x before 3.8.9rc2 and 4.x before 4.0.0rc4 uses the MD5 algorithm for password hashes, which makes it easier for context-dependent attackers to determine cleartext passwords via a brute-force attack on the database. | 2 | 4.3 | Medium | 2017-01-07 | 2011-07-20 | View | |
11353 | CVE-2011-5093 | Best Practical Solutions RT 4.x before 4.0.6 does not properly implement the DisallowExecuteCode option, which allows remote authenticated users to bypass intended access restrictions and execute arbitrary code by leveraging access to a privileged account, a different vulnerability than CVE-2011-4458 and CVE-2011-5092. | 2 | 6.5 | Medium | 2017-01-07 | 2012-06-05 | View | |
7997 | CVE-2011-1007 | Best Practical Solutions RT before 3.8.9 does not perform certain redirect actions upon a login, which allows physically proximate attackers to obtain credentials by resubmitting the login form via the back button of a web browser on an unattended workstation after an RT logout. | 2 | 2.1 | Low | 2017-01-07 | 2011-03-10 | View | |
81017 | CVE-2002-2066 | BestCrypt BCWipe 1.0.7 and 2.0 through 2.35.1 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 1533 of 17672, showing 5 records out of 88360 total, starting on record 7661, ending on 7665