NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
14486  CVE-2010-3065  The default session serializer in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 does not properly handle the PS_UNDEF_MARKER marker, which allows context-dependent attackers to modify arbitrary session variables via a crafted session variable name.    Medium  2017-01-18  2010-12-10  View
14487  CVE-2010-3066  The io_submit_one function in fs/aio.c in the Linux kernel before 2.6.23 allows local users to cause a denial of service (NULL pointer dereference) via a crafted io_submit system call with an IOCB_FLAG_RESFD flag.    4.9  Medium  2017-01-18  2012-03-19  View
14488  CVE-2010-3067  Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.    4.9  Medium  2017-01-18  2012-03-19  View
14489  CVE-2010-3069  Stack-based buffer overflow in the (1) sid_parse and (2) dom_sid_parse functions in Samba before 3.5.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted Windows Security ID (SID) on a file share.    7.5  High  2017-01-18  2011-08-26  View
14490  CVE-2010-3070  Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.    4.3  Medium  2017-01-18  2010-10-07  View

Page 2898 of 17672, showing 5 records out of 88360 total, starting on record 14486, ending on 14490

Actions