NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13546  CVE-2010-2055  Ghostscript 8.71 and earlier reads initialization files from the current working directory, which allows local users to execute arbitrary PostScript commands via a Trojan horse file, related to improper support for the -P- option to the gs program, as demonstrated using gs_init.ps, a different vulnerability than CVE-2010-4820.    7.2  High  2017-01-18  2015-01-09  View
13547  CVE-2010-2056  GNU gv before 3.7.0 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.    3.3  Low  2017-01-18  2010-07-22  View
13548  CVE-2010-2057  shared/util/StateUtils.java in Apache MyFaces 1.1.x before 1.1.8, 1.2.x before 1.2.9, and 2.0.x before 2.0.1 uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack.    Medium  2017-01-18  2010-11-19  View
13549  CVE-2010-2058  setup.py in Prewikka 0.9.14 installs prewikka.conf with world-readable permissions, which allows local users to obtain the SQL database password.    2.1  Low  2017-01-18  2011-02-02  View
13550  CVE-2010-2059  lib/fsm.c in RPM 4.8.0 and unspecified 4.7.x and 4.6.x versions, and RPM before 4.4.3, does not properly reset the metadata of an executable file during replacement of the file in an RPM package upgrade, which might allow local users to gain privileges by creating a hard link to a vulnerable (1) setuid or (2) setgid file.    7.2  High  2017-01-18  2011-03-17  View

Page 2710 of 17672, showing 5 records out of 88360 total, starting on record 13546, ending on 13550

Actions