NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
44422  CVE-2012-2705  The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a title to plain-text, which allows remote authenticated users with create or edit node permissions to conduct cross-site scripting (XSS) attacks via the title parameter.    2.1  Low  2017-01-19  2012-06-27  View
70279  CVE-2005-4690  Six Apart Movable Type 3.16 allows local users with blog-creation privileges to create or overwrite arbitrary files of certain types (such as HTML and image files) by selecting an arbitrary directory as a blog"s top-level directory. NOTE: this issue can be used in conjunction with CVE-2005-3102 to create or overwrite arbitrary files of all types.    2.1  Low  2017-01-03  2008-09-05  View
7303  CVE-2011-0178  The FSFindFolder API in CarbonCore in Apple Mac OS X before 10.6.7 provides a world-readable directory in response to a call with the kTemporaryFolderType flag, which allows local users to obtain potentially sensitive information by accessing this directory.    2.1  Low  2017-01-07  2011-03-24  View
84103  CVE-2016-9985  IBM Cognos Server 10.1.1 and 10.2 stores highly sensitive information in log files that could be read by a local user. IBM Reference #: 1999671.    2.1  Low  2017-03-29  2017-03-21  View
22663  CVE-2015-0136  powervc-iso-import in IBM PowerVC 1.2.0.x before 1.2.0.4 and 1.2.1.x before 1.2.2 places an access token on the command line during IVM and PowerKVM management, which allows local users to obtain sensitive information by listing the process.    2.1  Low  2017-01-19  2015-03-24  View

Page 2023 of 17672, showing 5 records out of 88360 total, starting on record 10111, ending on 10115

Actions