NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 29914 | CVE-2014-1222 | Directory traversal vulnerability in kcfinder/browse.php in Vtiger CRM before 6.0.0 Security patch 1 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the file parameter in a download action. NOTE: it is likely that this issue is actually in the KCFinder third-party component, and it affects additional products besides Vtiger CRM. | 2 | 4 | Medium | 2017-01-19 | 2015-11-19 | View | |
| 38874 | CVE-2013-2979 | Directory traversal vulnerability in IBM Optim Performance Manager 4.1.1 and IBM InfoSphere Optim Performance Manager 5.x before 5.2 allows remote authenticated users to read arbitrary files via a crafted URL. | 2 | 4 | Medium | 2017-01-18 | 2013-08-29 | View | |
| 60890 | CVE-2006-2185 | PORTAL.NLM in Novell Netware 6.5 SP5 writes the username and password in cleartext to the abend.log log file when the groupOperationsMethod function fails, which allows context-dependent attackers to gain privileges. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 61402 | CVE-2006-2717 | Unspecified vulnerability in Secure Elements Class 5 AVR client and server (aka C5 EVM) before 2.8.1 allows authenticated attackers to overwrite arbitrary files (1) on a server during an update or (2) on a client via modified pathnames, possibly due to a directory traversal issue. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 8411 | CVE-2011-1476 | Integer underflow in the Open Sound System (OSS) subsystem in the Linux kernel before 2.6.39 on unspecified non-x86 platforms allows local users to cause a denial of service (memory corruption) by leveraging write access to /dev/sequencer. | 2 | 4 | Medium | 2017-01-07 | 2015-05-11 | View |
Page 3249 of 17672, showing 5 records out of 88360 total, starting on record 16241, ending on 16245