NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16006  CVE-2010-4768  Open Ticket Request System (OTRS) before 2.3.5 does not properly disable hidden permissions, which allows remote authenticated users to bypass intended queue access restrictions in opportunistic circumstances by visiting a ticket, related to a certain ordering of permission-set and permission-remove operations involving both hidden permissions and other permissions.    Medium  2017-01-18  2011-03-22  View
16007  CVE-2010-4769  Directory traversal vulnerability in the Jimtawl (com_jimtawl) component 1.0.2 Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the task parameter to index.php.    7.5  High  2017-01-18  2011-03-24  View
16008  CVE-2010-4770  SQL injection vulnerability in index.php in CommodityRentals DVD Rentals Script allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a catalog action.    7.5  High  2017-01-18  2011-09-21  View
16009  CVE-2010-4771  SQL injection vulnerability to viewforum.php in S-CMS 2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-18  2011-03-24  View
16010  CVE-2010-4772  Cross-site scripting (XSS) vulnerability in blocks/lang.php in S-CMS 2.5 allows remote attackers to inject arbitrary web script or HTML via the id parameter to viewforum.php.    4.3  Medium  2017-01-18  2011-03-24  View

Page 3202 of 17672, showing 5 records out of 88360 total, starting on record 16006, ending on 16010

Actions