NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45800 | CVE-2012-4408 | course/reset.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 checks an update capability instead of a reset capability, which allows remote authenticated users to bypass intended access restrictions via a reset operation. | 2 | 5.5 | Medium | 2017-01-19 | 2012-09-19 | View | |
| 39367 | CVE-2013-3600 | Coursemill Learning Management System (LMS) 6.6 allows remote authenticated users to gain privileges via a modified userid value to unspecified functions. | 2 | 8.5 | High | 2017-01-18 | 2013-09-06 | View | |
| 39368 | CVE-2013-3601 | Coursemill Learning Management System (LMS) 6.6 does not properly restrict JSP function calls, which allows remote authenticated users to perform arbitrary JSP operations by leveraging the Student role and providing an op parameter. | 2 | 6 | Medium | 2017-01-18 | 2013-09-30 | View | |
| 40956 | CVE-2013-5708 | Coursemill Learning Management System (LMS) 6.8 constructs secret tokens based on time values, which makes it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks via vectors related to cookies, a different vulnerability than CVE-2013-3605. | 2 | 6.8 | Medium | 2017-01-18 | 2013-09-06 | View | |
| 14753 | CVE-2010-3353 | Cowbell 0.2.7.1 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory. | 2 | 6.9 | Medium | 2017-01-18 | 2010-10-21 | View |
Page 2686 of 17672, showing 5 records out of 88360 total, starting on record 13426, ending on 13430