NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 16321 | CVE-2010-5086 | Directory traversal vulnerability in wiki/rankings.php in Bitweaver 2.7 and 2.8.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the style parameter. | 2 | 5 | Medium | 2017-01-18 | 2012-03-19 | View | |
| 16322 | CVE-2010-5087 | SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4 allows remote attackers to bypass the cross-site request forgery (CSRF) protection mechanism and hijack the authentication of administrators via vectors related to "form action requests" using a controller. | 2 | 5 | Medium | 2017-01-18 | 2012-08-27 | View | |
| 16323 | CVE-2010-5088 | Multiple cross-site request forgery (CSRF) vulnerabilities in SilverStripe 2.3.x before 2.3.9 and 2.4.x before 2.4.3 allow remote attackers to hijack the authentication of administrators via destructive controller actions, a different vulnerability than CVE-2010-5087. | 2 | 6.8 | Medium | 2017-01-18 | 2012-08-27 | View | |
| 16324 | CVE-2010-5089 | SilverStripe before 2.4.2 does not properly restrict access to pages in draft mode, which allows remote attackers to obtain sensitive information. | 2 | 4.3 | Medium | 2017-01-18 | 2012-08-27 | View | |
| 16325 | CVE-2010-5090 | SilverStripe before 2.4.2 allows remote authenticated users to change administrator passwords via vectors related to admin/security. | 2 | 4 | Medium | 2017-01-18 | 2012-08-27 | View |
Page 3265 of 17672, showing 5 records out of 88360 total, starting on record 16321, ending on 16325