NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29038 | CVE-2014-0103 | WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files. | 2 | 2.1 | Low | 2017-01-19 | 2015-11-04 | View | |
12233 | CVE-2010-0686 | WebAccess in VMware VirtualCenter 2.0.2 and 2.5, VMware Server 2.0, and VMware ESX 3.0.3 and 3.5 allows remote attackers to leverage proxy-server functionality to spoof the origin of requests via unspecified vectors, related to a "URL forwarding vulnerability." | 2 | 7.5 | High | 2017-01-18 | 2010-04-28 | View | |
20355 | CVE-2016-4807 | Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin). | 2 | 3.5 | Low | 2017-01-19 | 2017-01-11 | View | |
20354 | CVE-2016-4806 | Web2py versions 2.14.5 and below was affected by Local File Inclusion vulnerability, which allows a malicious intended user to read/access web server sensitive files. | 2 | 5 | Medium | 2017-01-19 | 2017-01-12 | View | |
20356 | CVE-2016-4808 | Web2py versions 2.14.5 and below was affected by CSRF (Cross Site Request Forgery) vulnerability, which allows an attacker to trick a logged in user to perform some unwanted actions i.e An attacker can trick an victim to disable the installed application just by sending a URL to victim. | 2 | 6.8 | Medium | 2017-01-19 | 2017-01-12 | View |
Page 426 of 17672, showing 5 records out of 88360 total, starting on record 2126, ending on 2130