NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4663 | CVE-2008-4874 | The web component in Philips Electronics VOIP841 DECT Phone with firmware 1.0.4.50 and 1.0.4.80 has a back door "service" account with "service" as its password, which makes it easier for remote attackers to obtain access. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 31366 | CVE-2014-3103 | The Web component in IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | 2 | 5 | Medium | 2017-01-19 | 2014-09-24 | View | |
| 8963 | CVE-2011-2142 | The Web Client Service in IBM Datacap Taskmaster Capture 8.0.1 before FP1 requires a cleartext password, which has unspecified impact and attack vectors. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
| 44007 | CVE-2012-2164 | The Web client in IBM Rational ClearQuest 7.1.x before 7.1.2.7 and 8.x before 8.0.0.3 allows remote authenticated users to bypass intended access restrictions, and use the Site Administration menu to modify system settings, via a parameter-tampering attack. | 2 | 5.5 | Medium | 2017-01-19 | 2012-08-29 | View | |
| 15851 | CVE-2010-4602 | The Web client in IBM Rational ClearQuest 7.1.1.x before 7.1.1.4 and 7.1.2.x before 7.1.2.1 allows remote authenticated users to bypass "restricted user" limitations, and read arbitrary records, via a modified record number in the URL for a RECORD action, as demonstrated by a modified bookmark. | 2 | 4 | Medium | 2017-01-18 | 2011-01-11 | View |
Page 2753 of 17672, showing 5 records out of 88360 total, starting on record 13761, ending on 13765