NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13134  CVE-2010-1614  Multiple cross-site scripting (XSS) vulnerabilities in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) the Login-As feature or (2) when the global search feature is enabled, unspecified global search forms in the Global Search Engine. NOTE: vector 1 might be resultant from a cross-site request forgery (CSRF) vulnerability.    4.3  Medium  2017-01-18  2010-05-22  View
13646  CVE-2010-2159  Dameng DM Database Server allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors related to the SP_DEL_BAK_EXPIRED procedure in wdm_dll.dll, which triggers memory corruption.    6.5  Medium  2017-01-18  2010-06-08  View
13902  CVE-2010-2427  VMware Studio 2.0 does not properly write to temporary files, which allows local users to gain privileges via unspecified vectors.    4.4  Medium  2017-01-18  2010-07-22  View
14926  CVE-2010-3548  Unspecified vulnerability in the Java Naming and Directory Interface (JNDI) component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, and 1.4.2_27 allows remote attackers to affect confidentiality via unknown vectors. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a reliable downstream vendor that this allows remote attackers to determine internal IP addresses or "otherwise-protected internal network names."    Medium  2017-01-18  2016-08-22  View
15182  CVE-2010-3846  Array index error in the apply_rcs_change function in rcs.c in CVS 1.11.23 allows local users to gain privileges via an RCS file containing crafted delta fragment changes that trigger a heap-based buffer overflow.    6.9  Medium  2017-01-18  2011-01-04  View

Page 2804 of 17672, showing 5 records out of 88360 total, starting on record 14016, ending on 14020

Actions