NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8720 | CVE-2011-1840 | The MartiniCreations PassmanLite Password Manager application before 1.48 for Android stores the master password and unspecified other account information in cleartext, which allows local users to obtain sensitive information by leveraging shell access. | 2 | 2.1 | Low | 2017-01-07 | 2011-09-21 | View | |
8719 | CVE-2011-1839 | IBM Rational Build Forge 7.1.0 uses the HTTP GET method during redirection from the authentication servlet to a PHP script, which makes it easier for context-dependent attackers to discover session IDs by reading (1) web-server access logs, (2) web-server Referer logs, or (3) the browser history. | 2 | 5 | Medium | 2017-01-07 | 2011-05-02 | View | |
8718 | CVE-2011-1838 | Multiple cross-site scripting (XSS) vulnerabilities in TemplateLogin.pm in TWiki before 5.0.2 allow remote attackers to inject arbitrary web script or HTML via the origurl parameter to a (1) view script or (2) login script. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-21 | View | |
8717 | CVE-2011-1837 | The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to overwrite arbitrary files via unspecified vectors. | 2 | 3.6 | Low | 2017-01-07 | 2014-03-07 | View | |
8716 | CVE-2011-1836 | utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, which might allow local users to bypass intended access restrictions via standard filesystem operations during the recovery process. | 2 | 4.6 | Medium | 2017-01-07 | 2014-03-07 | View |
Page 15929 of 17672, showing 5 records out of 88360 total, starting on record 79641, ending on 79645