NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11499 | CVE-2011-5239 | CiviCRM 4.0.5 and 4.1.1 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-07 | 2012-11-06 | View | |
77035 | CVE-2000-0794 | Buffer overflow in IRIX libgl.so library allows local users to gain root privileges via a long HOME variable to programs such as (1) gmemusage and (2) gr_osview. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
11755 | CVE-2010-0180 | Install/Filesystem.pm in Bugzilla 3.5.1 through 3.6 and 3.7, when use_suexec is enabled, uses world-readable permissions for the localconfig files, which allows local users to read sensitive configuration fields, as demonstrated by the database password field and the site_wide_secret field. | 2 | 1.9 | Low | 2017-01-18 | 2010-06-28 | View | |
77291 | CVE-2000-1057 | Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
12011 | CVE-2010-0455 | Cross-site scripting (XSS) vulnerability in forum/viewtopic.php in PunBB 1.3 allows remote attackers to inject arbitrary web script or HTML via the pid parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2010-01-29 | View |
Page 16263 of 17672, showing 5 records out of 88360 total, starting on record 81311, ending on 81315