NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8716 | CVE-2011-1836 | utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, which might allow local users to bypass intended access restrictions via standard filesystem operations during the recovery process. | 2 | 4.6 | Medium | 2017-01-07 | 2014-03-07 | View | |
8717 | CVE-2011-1837 | The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to overwrite arbitrary files via unspecified vectors. | 2 | 3.6 | Low | 2017-01-07 | 2014-03-07 | View | |
8718 | CVE-2011-1838 | Multiple cross-site scripting (XSS) vulnerabilities in TemplateLogin.pm in TWiki before 5.0.2 allow remote attackers to inject arbitrary web script or HTML via the origurl parameter to a (1) view script or (2) login script. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-21 | View | |
8719 | CVE-2011-1839 | IBM Rational Build Forge 7.1.0 uses the HTTP GET method during redirection from the authentication servlet to a PHP script, which makes it easier for context-dependent attackers to discover session IDs by reading (1) web-server access logs, (2) web-server Referer logs, or (3) the browser history. | 2 | 5 | Medium | 2017-01-07 | 2011-05-02 | View | |
8720 | CVE-2011-1840 | The MartiniCreations PassmanLite Password Manager application before 1.48 for Android stores the master password and unspecified other account information in cleartext, which allows local users to obtain sensitive information by leveraging shell access. | 2 | 2.1 | Low | 2017-01-07 | 2011-09-21 | View |
Page 1744 of 17672, showing 5 records out of 88360 total, starting on record 8716, ending on 8720