NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
76525 | CVE-2000-0282 | TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View | |
11245 | CVE-2011-4944 | Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file. | 2 | 1.9 | Low | 2017-01-07 | 2013-10-30 | View | |
76781 | CVE-2000-0539 | Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID"s via the SessionServlet servlet. | 2 | 6.4 | Medium | 2017-01-05 | 2008-09-05 | View | |
11501 | CVE-2011-5241 | Services_Twitter 0.6.3 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-07 | 2012-11-15 | View | |
77037 | CVE-2000-0796 | Buffer overflow in dmplay in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long command line option. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View |
Page 16398 of 17672, showing 5 records out of 88360 total, starting on record 81986, ending on 81990