NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
76525  CVE-2000-0282  TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program.    Medium  2017-01-05  2008-09-10  View
11245  CVE-2011-4944  Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.    1.9  Low  2017-01-07  2013-10-30  View
76781  CVE-2000-0539  Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID"s via the SessionServlet servlet.    6.4  Medium  2017-01-05  2008-09-05  View
11501  CVE-2011-5241  Services_Twitter 0.6.3 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    5.8  Medium  2017-01-07  2012-11-15  View
77037  CVE-2000-0796  Buffer overflow in dmplay in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long command line option.    7.2  High  2017-01-05  2008-09-05  View

Page 16398 of 17672, showing 5 records out of 88360 total, starting on record 81986, ending on 81990

Actions