NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14845 | CVE-2010-3464 | Cross-site request forgery (CSRF) vulnerability in admin/manager_users.class.php in SantaFox 2.02, and possibly earlier, allows remote attackers to hijack the authentication of administrators for requests, as demonstrated by adding administrative users via the save_admin action to admin/index.php. | 2 | 6.8 | Medium | 2017-01-18 | 2010-09-20 | View | |
80381 | CVE-2002-1428 | index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
15101 | CVE-2010-3756 | The _CalcHashValueWithLength function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not properly validate an unspecified length value, which allows remote attackers to cause a denial of service (daemon crash) by sending data over TCP. NOTE: this might overlap CVE-2010-3060. | 2 | 5 | Medium | 2017-01-18 | 2013-08-20 | View | |
80637 | CVE-2002-1684 | Directory traversal vulnerability in (1) Deerfield D2Gfx 1.0.2 or (2) BadBlue Enterprise Edition 1.5.x and BadBlue Personal Edition 1.5.6 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in the script used to read Microsoft Office documents. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
15357 | CVE-2010-4039 | Google Chrome before 7.0.517.41 on Linux does not properly set the PATH environment variable, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-18 | 2012-01-26 | View |
Page 17142 of 17672, showing 5 records out of 88360 total, starting on record 85706, ending on 85710