NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21976  CVE-2016-7954  Bundler 1.x might allow remote attackers to inject arbitrary Ruby code into an application by leveraging a gem name collision on a secondary source. NOTE: this might overlap CVE-2013-0334.    7.5  High  2017-01-19  2016-12-23  View
4732  CVE-2008-4943  bulmages-servers 0.11.1 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/error.txt, (b) /tmp/errores.txt, and possibly other temporary files, related to the (1) creabulmafact, (2) creabulmacont, and possibly (3) actualizabulmacont, (4) installbulmages-db, and (5) actualizabulmafact scripts.    6.9  Medium  2017-01-03  2009-07-21  View
46792  CVE-2012-5696  Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote attackers to obtain the plaintext database password via a direct request.    Medium  2017-01-19  2014-12-16  View
42927  CVE-2012-0862  builtins.c in Xinetd before 2.3.15 does not check the service type when the tcpmux-server service is enabled, which exposes all enabled services and allows remote attackers to bypass intended access restrictions via a request to tcpmux port 1.    4.3  Medium  2017-01-19  2013-10-10  View
76437  CVE-2000-0194  buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters.    7.2  High  2017-01-05  2008-09-10  View

Page 15396 of 17672, showing 5 records out of 88360 total, starting on record 76976, ending on 76980

Actions