NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36627 | CVE-2013-0274 | upnp.c in libpurple in Pidgin before 2.10.7 does not properly terminate long strings in UPnP responses, which allows remote attackers to cause a denial of service (application crash) by leveraging access to the local network. | 2 | 2.9 | Low | 2017-01-18 | 2013-11-02 | View | |
60146 | CVE-2006-1437 | UPOINT @1 Event Publisher stores sensitive information under the web document root with insufifcient access control, which allows remote attackers to read private comments via a direct request to eventpublisher.txt. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
31616 | CVE-2014-3417 | uPortal before 4.0.13.1 does not properly check the CONFIG permission, which allows remote authenticated users to configure portlets by leveraging the SUBSCRIBE permission for a portlet. | 2 | 6.5 | Medium | 2017-01-19 | 2014-05-30 | View | |
31615 | CVE-2014-3416 | uPortal before 4.0.13.1 does not properly check the MANAGE permissions, which allows remote authenticated users to manage arbitrary portlets by leveraging the SUBSCRIBE permission for the portlet-admin portlet. | 2 | 6.5 | Medium | 2017-01-19 | 2014-05-30 | View | |
5166 | CVE-2008-5393 | UPR-Kernel in Ubuntu Privacy Remix (UPR) before 8.04_r1 includes kernel support for mounting RAID arrays, which might allow remote attackers to bypass intended isolation mechanisms by (1) reading from or (2) writing to these arrays. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View |
Page 16784 of 17672, showing 5 records out of 88360 total, starting on record 83916, ending on 83920