NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13706  CVE-2010-2223  Virtual Desktop Server Manager (VDSM) in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 does not properly perform VM post-zeroing after the removal of a virtual machine"s data, which allows guest OS users to obtain sensitive information by examining the disk blocks associated with a deleted virtual machine.    2.1  Low  2017-01-18  2010-06-25  View
13707  CVE-2010-2224  The snapshot merging functionality in Red Hat Enterprise Virtualization Manager (aka RHEV-M) before 2.2 does not properly pass the postzero parameter during operations on deleted volumes, which allows guest OS users to obtain sensitive information by examining the disk blocks associated with a deleted virtual machine.    2.1  Low  2017-01-18  2013-01-15  View
13708  CVE-2010-2225  Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function.    7.5  High  2017-01-18  2016-08-22  View
13709  CVE-2010-2226  The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT ioctl, which allows local users to leverage write access and obtain read access by swapping one file into another file.    1.9  Low  2017-01-18  2012-03-19  View
13710  CVE-2010-2227  Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-Encoding header, which allows remote attackers to cause a denial of service (application outage) or obtain sensitive information via a crafted header that interferes with "recycling of a buffer."    6.4  Medium  2017-01-18  2014-03-16  View

Page 2742 of 17672, showing 5 records out of 88360 total, starting on record 13706, ending on 13710

Actions