NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
77567 | CVE-2001-0087 | itetris/xitetris 1.6.2 and earlier trusts the PATH environmental variable to find and execute the gunzip program, which allows local users to gain root privileges by changing their PATH so that it points to a malicious gunzip program. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
12287 | CVE-2010-0742 | The Cryptographic Message Syntax (CMS) implementation in crypto/cms/cms_asn1.c in OpenSSL before 0.9.8o and 1.x before 1.0.0a does not properly handle structures that contain OriginatorInfo, which allows context-dependent attackers to modify invalid memory locations or conduct double-free attacks, and possibly execute arbitrary code, via unspecified vectors. | 2 | 7.5 | High | 2017-01-18 | 2014-03-26 | View | |
77823 | CVE-2001-0347 | Information disclosure vulnerability in Microsoft Windows 2000 telnet service allows remote attackers to determine the existence of user accounts such as Guest, or log in to the server without specifying the domain name, via a malformed userid. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
12543 | CVE-2010-1009 | SQL injection vulnerability in the Educator extension 0.1.5 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-18 | 2010-03-22 | View | |
78079 | CVE-2001-0614 | Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View |
Page 17628 of 17672, showing 5 records out of 88360 total, starting on record 88136, ending on 88140