NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11982  CVE-2010-0426  sudo 1.6.x before 1.6.9p21 and 1.7.x before 1.7.2p4, when a pseudo-command is enabled, permits a match between the name of the pseudo-command and the name of an executable file in an arbitrary directory, which allows local users to gain privileges via a crafted executable file, as demonstrated by a file named sudoedit in a user"s home directory.    6.9  Medium  2017-01-18  2011-01-21  View
77518  CVE-2001-0038  Offline Explorer 1.4 before Service Release 2 allows remote attackers to read arbitrary files by specifying the drive letter (e.g. C:) in the requested URL.    Medium  2017-01-05  2008-09-05  View
12494  CVE-2010-0958  Directory traversal vulnerability in modules/hayoo/index.php in Tribisur 2.1, 2.0, and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary files via directory traversal sequences in the theme parameter. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-18  2010-03-10  View
78030  CVE-2001-0565  Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long "-F" command line option.    4.6  Medium  2017-01-05  2008-09-10  View
12750  CVE-2010-1217  Directory traversal vulnerability in the JE Form Creator (com_jeformcr) component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory traversal sequences in the view parameter to index.php. NOTE: the original researcher states that the affected product is JE Tooltip, not Form Creator; however, the exploit URL suggests that Form Creator is affected.    4.3  Medium  2017-01-18  2013-07-23  View

Page 15901 of 17672, showing 5 records out of 88360 total, starting on record 79501, ending on 79505

Actions