NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11982 | CVE-2010-0426 | sudo 1.6.x before 1.6.9p21 and 1.7.x before 1.7.2p4, when a pseudo-command is enabled, permits a match between the name of the pseudo-command and the name of an executable file in an arbitrary directory, which allows local users to gain privileges via a crafted executable file, as demonstrated by a file named sudoedit in a user"s home directory. | 2 | 6.9 | Medium | 2017-01-18 | 2011-01-21 | View | |
77518 | CVE-2001-0038 | Offline Explorer 1.4 before Service Release 2 allows remote attackers to read arbitrary files by specifying the drive letter (e.g. C:) in the requested URL. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
12494 | CVE-2010-0958 | Directory traversal vulnerability in modules/hayoo/index.php in Tribisur 2.1, 2.0, and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary files via directory traversal sequences in the theme parameter. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-18 | 2010-03-10 | View | |
78030 | CVE-2001-0565 | Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long "-F" command line option. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-10 | View | |
12750 | CVE-2010-1217 | Directory traversal vulnerability in the JE Form Creator (com_jeformcr) component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory traversal sequences in the view parameter to index.php. NOTE: the original researcher states that the affected product is JE Tooltip, not Form Creator; however, the exploit URL suggests that Form Creator is affected. | 2 | 4.3 | Medium | 2017-01-18 | 2013-07-23 | View |
Page 15901 of 17672, showing 5 records out of 88360 total, starting on record 79501, ending on 79505