NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9943 | CVE-2011-3263 | zabbix_agentd in Zabbix before 1.8.6 and 1.9.x before 1.9.4 allows context-dependent attackers to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
76081 | CVE-1999-1431 | ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View | |
48820 | CVE-2009-1550 | Zakkis Technology ABC Advertise 1.0 does not properly restrict access to admin.inc.php, which allows remote attackers to obtain the administrator login name and password via a direct request. | 2 | 5 | Medium | 2017-01-07 | 2009-05-07 | View | |
72573 | CVE-2004-2196 | Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
33117 | CVE-2014-5448 | Zarafa 5.00 uses world-readable permissions for the files in the log directory, which allows local users to obtain sensitive information by reading the log files. | 2 | 2.1 | Low | 2017-01-19 | 2015-11-17 | View |
Page 17636 of 17672, showing 5 records out of 88360 total, starting on record 88176, ending on 88180