NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
77027 | CVE-2000-0786 | GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View | |
11747 | CVE-2010-0172 | toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances. | 2 | 4.3 | Medium | 2017-01-18 | 2010-08-21 | View | |
77283 | CVE-2000-1049 | Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of "." characters. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
77539 | CVE-2001-0059 | patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack. | 2 | 6.2 | Medium | 2017-01-05 | 2016-10-17 | View | |
12259 | CVE-2010-0713 | Multiple cross-site request forgery (CSRF) vulnerabilities in Zenoss 2.3.3, and other versions before 2.5, allow remote attackers to hijack the authentication of an administrator for (1) requests that reset user passwords via zport/dmd/ZenUsers/admin, and (2) requests that change user commands, which allows for remote execution of system commands via zport/dmd/userCommands/. | 2 | 6.8 | Medium | 2017-01-18 | 2010-03-02 | View |
Page 16657 of 17672, showing 5 records out of 88360 total, starting on record 83281, ending on 83285