NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19223 | CVE-2016-3415 | Zimbra Collaboration before 8.7.0 allows remote attackers to conduct deserialization attacks via unspecified vectors, aka bug 102276. | 2 | 6.4 | Medium | 2017-02-06 | 2017-02-02 | View | |
15966 | CVE-2010-4728 | Zikula before 1.3.1 uses the rand and srand PHP functions for random number generation, which makes it easier for remote attackers to defeat protection mechanisms based on randomization by predicting a return value, as demonstrated by the authid protection mechanism. | 2 | 5 | Medium | 2017-01-18 | 2011-02-14 | View | |
15967 | CVE-2010-4729 | Zikula before 1.2.3 does not use the authid protection mechanism for (1) the lostpassword form and (2) mailpasswd processing, which makes it easier for remote attackers to generate a flood of password requests and possibly conduct cross-site request forgery (CSRF) attacks via multiple form submissions. | 2 | 6.8 | Medium | 2017-01-18 | 2011-02-14 | View | |
10398 | CVE-2011-3826 | Zikula 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/voodoodolly/version.php and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-05-21 | View | |
28501 | CVE-2015-8286 | Zhuhai RaySharp firmware has a hardcoded root password, which makes it easier for remote attackers to obtain access via a session on TCP port 23 or 9000. | 2 | 10 | High | 2017-01-19 | 2016-03-07 | View |
Page 24 of 17672, showing 5 records out of 88360 total, starting on record 116, ending on 120