NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
79319  CVE-2002-0309  SMTP proxy in Symantec Enterprise Firewall (SEF) 6.5.x includes the firewall"s physical interface name and address in an SMTP protocol exchange when NAT translation is made to an address other than the firewall, which could allow remote attackers to determine certain firewall configuration information.    Medium  2017-01-05  2016-10-17  View
80343  CVE-2002-1390  The daemon for GeneWeb before 4.09 does not properly handle requested paths, which allows remote attackers to read arbitrary files via a crafted URL.    Medium  2017-01-05  2008-09-10  View
15063  CVE-2010-3706  plugins/acl/acl-backend-vfile.c in Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.5 interprets an ACL entry as a directive to add to the permissions granted by another ACL entry, instead of a directive to replace the permissions granted by another ACL entry, in certain circumstances involving the private namespace of a user, which allows remote authenticated users to bypass intended access restrictions via a request to read or modify a mailbox.    5.5  Medium  2017-01-18  2011-02-12  View
15319  CVE-2010-3991  Cross-site scripting (XSS) vulnerability in HP Insight Control Server Migration before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-18  2010-11-11  View
15575  CVE-2010-4313  Unrestricted file upload vulnerability in fileman_file_upload.php in Orbis CMS 1.0.2 allows remote authenticated users to execute arbitrary code by uploading a .php file, and then accessing it via a direct request to the file in uploads/.    Medium  2017-01-18  2010-12-08  View

Page 16228 of 17672, showing 5 records out of 88360 total, starting on record 81136, ending on 81140

Actions