NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
77027  CVE-2000-0786  GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.    4.6  Medium  2017-01-05  2016-10-17  View
11747  CVE-2010-0172  toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.    4.3  Medium  2017-01-18  2010-08-21  View
77283  CVE-2000-1049  Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of "." characters.    Medium  2017-01-05  2016-10-17  View
77539  CVE-2001-0059  patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.    6.2  Medium  2017-01-05  2016-10-17  View
12259  CVE-2010-0713  Multiple cross-site request forgery (CSRF) vulnerabilities in Zenoss 2.3.3, and other versions before 2.5, allow remote attackers to hijack the authentication of an administrator for (1) requests that reset user passwords via zport/dmd/ZenUsers/admin, and (2) requests that change user commands, which allows for remote execution of system commands via zport/dmd/userCommands/.    6.8  Medium  2017-01-18  2010-03-02  View

Page 16657 of 17672, showing 5 records out of 88360 total, starting on record 83281, ending on 83285

Actions