NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
8908  CVE-2011-2084  Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 allows remote authenticated users to read (1) hashes of former passwords and (2) ticket correspondence history by leveraging access to a privileged account.    Medium  2017-01-07  2012-09-28  View
47261  CVE-2012-6580  Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled, does not ensure that the UI labels unencrypted messages as unencrypted, which might make it easier for remote attackers to spoof details of a message"s origin or interfere with encryption-policy auditing via an e-mail message to a queue"s address.    4.3  Medium  2017-01-19  2013-07-24  View
47260  CVE-2012-6579  Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled, allows remote attackers to configure encryption or signing for certain outbound e-mail, and possibly cause a denial of service (loss of e-mail readability), via an e-mail message to a queue"s address.    6.4  Medium  2017-01-19  2013-07-26  View
47262  CVE-2012-6581  Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled, allows remote attackers to bypass intended restrictions on reading keys in the product"s keyring, and trigger outbound e-mail messages signed by an arbitrary stored secret key, by leveraging a UI e-mail signing privilege.    4.3  Medium  2017-01-19  2013-07-24  View
47259  CVE-2012-6578  Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled with a "Sign by default" queue configuration, uses a queue"s key for signing, which might allow remote attackers to spoof messages by leveraging the lack of authentication semantics.    4.3  Medium  2017-01-19  2013-07-24  View

Page 16141 of 17672, showing 5 records out of 88360 total, starting on record 80701, ending on 80705

Actions