NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11956  CVE-2010-0397  The xmlrpc extension in PHP 5.3.1 does not properly handle a missing methodName element in the first argument to the xmlrpc_decode_request function, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) and possibly have unspecified other impact via a crafted argument.    Medium  2017-01-18  2010-12-10  View
11957  CVE-2010-0400  SQL injection vulnerability in lib/user.php in mahara 1.0.4 allows remote attackers to execute arbitrary SQL commands via a username.    7.5  High  2017-01-18  2010-04-08  View
11958  CVE-2010-0401  OpenTTD before 1.0.1 accepts a company password for authentication in response to a request for the server password, which allows remote authenticated users to bypass intended access restrictions or cause a denial of service (daemon crash) by sending a company password packet.    6.5  Medium  2017-01-18  2010-05-11  View
11959  CVE-2010-0402  OpenTTD before 1.0.1 does not properly validate index values of certain items, which allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted in-game command.    6.5  Medium  2017-01-18  2010-05-05  View
11960  CVE-2010-0403  Directory traversal vulnerability in about.php in phpGroupWare (phpgw) before 0.9.16.016 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the app parameter.    6.8  Medium  2017-01-18  2010-05-26  View

Page 2392 of 17672, showing 5 records out of 88360 total, starting on record 11956, ending on 11960

Actions