NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15966 | CVE-2010-4728 | Zikula before 1.3.1 uses the rand and srand PHP functions for random number generation, which makes it easier for remote attackers to defeat protection mechanisms based on randomization by predicting a return value, as demonstrated by the authid protection mechanism. | 2 | 5 | Medium | 2017-01-18 | 2011-02-14 | View | |
| 15967 | CVE-2010-4729 | Zikula before 1.2.3 does not use the authid protection mechanism for (1) the lostpassword form and (2) mailpasswd processing, which makes it easier for remote attackers to generate a flood of password requests and possibly conduct cross-site request forgery (CSRF) attacks via multiple form submissions. | 2 | 6.8 | Medium | 2017-01-18 | 2011-02-14 | View | |
| 15968 | CVE-2010-4730 | Directory traversal vulnerability in cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the page parameter, a different vulnerability than CVE-2009-4463. | 2 | 6.8 | Medium | 2017-01-18 | 2011-02-15 | View | |
| 15969 | CVE-2010-4731 | Absolute path traversal vulnerability in cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote authenticated administrators to read arbitrary files via a full pathname in the file parameter, a different vulnerability than CVE-2009-4463. | 2 | 6.8 | Medium | 2017-01-18 | 2011-02-15 | View | |
| 15970 | CVE-2010-4732 | cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote authenticated administrators to execute arbitrary code by using a config.html 2.conf action to replace the logo page"s GIF image file with a file containing this code, a different vulnerability than CVE-2009-4463. | 2 | 9 | High | 2017-01-18 | 2011-02-15 | View |
Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970