NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15041 | CVE-2010-3684 | The FTP authentication module in Synology Disk Station 2.x logs passwords to the web application interface in cases of incorrect login attempts, which allows local users to obtain sensitive information by reading a log, a different vulnerability than CVE-2010-2453. | 2 | 2.1 | Low | 2017-01-18 | 2010-09-30 | View | |
| 15042 | CVE-2010-3685 | The OpenID module in Drupal 6.x before 6.18, and the OpenID module 5.x before 5.x-1.4 for Drupal, violates the OpenID 2.0 protocol by not checking for reuse of openid.response_nonce values, which allows remote attackers to bypass authentication by leveraging an assertion from an OpenID provider. | 2 | 5 | Medium | 2017-01-18 | 2010-09-30 | View | |
| 15043 | CVE-2010-3686 | The OpenID module in Drupal 6.x before 6.18, and the OpenID module 5.x before 5.x-1.4 for Drupal, violates the OpenID 2.0 protocol by not ensuring that fields are signed, which allows remote attackers to bypass authentication by leveraging an assertion from an OpenID provider. | 2 | 5 | Medium | 2017-01-18 | 2010-09-30 | View | |
| 15044 | CVE-2010-3687 | Unspecified vulnerability in the powermail extension 1.5.3 and earlier for TYPO3 allows remote attackers to bypass validation have an unspecified impact by "[injecting] arbitrary values into validated fields," as demonstrated using the (1) Email and (2) URL fields. | 2 | 5 | Medium | 2017-01-18 | 2010-09-30 | View | |
| 15045 | CVE-2010-3688 | Directory traversal vulnerability in ADMIN/login.php in NetArtMEDIA WebSiteAdmin allows remote emote attackers to include and execute arbitrary local files via directory traversal sequences in the lng parameter. | 2 | 7.5 | High | 2017-01-18 | 2010-09-30 | View |
Page 3009 of 17672, showing 5 records out of 88360 total, starting on record 15041, ending on 15045