NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11499  CVE-2011-5239  CiviCRM 4.0.5 and 4.1.1 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    5.8  Medium  2017-01-07  2012-11-06  View
77035  CVE-2000-0794  Buffer overflow in IRIX libgl.so library allows local users to gain root privileges via a long HOME variable to programs such as (1) gmemusage and (2) gr_osview.    7.2  High  2017-01-05  2008-09-05  View
11755  CVE-2010-0180  Install/Filesystem.pm in Bugzilla 3.5.1 through 3.6 and 3.7, when use_suexec is enabled, uses world-readable permissions for the localconfig files, which allows local users to read sensitive configuration fields, as demonstrated by the database password field and the site_wide_secret field.    1.9  Low  2017-01-18  2010-06-28  View
77291  CVE-2000-1057  Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.    4.6  Medium  2017-01-05  2008-09-05  View
12011  CVE-2010-0455  Cross-site scripting (XSS) vulnerability in forum/viewtopic.php in PunBB 1.3 allows remote attackers to inject arbitrary web script or HTML via the pid parameter.    4.3  Medium  2017-01-18  2010-01-29  View

Page 16263 of 17672, showing 5 records out of 88360 total, starting on record 81311, ending on 81315

Actions