NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 36168 | CVE-2014-9466 | Open-Xchange (OX) AppSuite and Server before 7.4.2-rev42, 7.6.0 before 7.6.0-rev36, and 7.6.1 before 7.6.1-rev14 does not properly handle directory permissions, which allows remote authenticated users to read files via unspecified vectors, related to the "folder identifier." | 2 | 4 | Medium | 2017-01-19 | 2015-02-18 | View | |
| 37704 | CVE-2013-1512 | Unspecified vulnerability in Oracle MySQL 5.5.29 and earlier allows remote authenticated users to affect availability via unknown vectors related to Data Manipulation Language. | 2 | 4 | Medium | 2017-01-18 | 2014-02-20 | View | |
| 37960 | CVE-2013-1814 | The users/get program in the User RPC API in Apache Rave 0.11 through 0.20 allows remote authenticated users to obtain sensitive information about all user accounts via the offset parameter, as demonstrated by discovering password hashes in the password field of a response. | 2 | 4 | Medium | 2017-01-18 | 2013-07-03 | View | |
| 61000 | CVE-2006-2297 | Heap-based buffer overflow in Microsoft Infotech Storage System Library (itss.dll) allows user-assisted attackers to execute arbitrary code via a crafted CHM / ITS file that triggers the overflow while decompiling. | 2 | 4 | Medium | 2016-12-20 | 2011-10-18 | View | |
| 15177 | CVE-2010-3838 | MySQL 5.0 before 5.0.92, 5.1 before 5.1.51, and 5.5 before 5.5.6 allows remote authenticated users to cause a denial of service (server crash) via a query that uses the (1) GREATEST or (2) LEAST function with a mixed list of numeric and LONGBLOB arguments, which is not properly handled when the function"s result is "processed using an intermediate temporary table." | 2 | 4 | Medium | 2017-01-18 | 2011-07-01 | View |
Page 3036 of 17672, showing 5 records out of 88360 total, starting on record 15176, ending on 15180