NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
75052 | CVE-1999-0383 | ACC Tigris allows public access without a login. | 2 | 7.5 | High | 2017-01-05 | 2008-09-09 | View | |
20878 | CVE-2016-5661 | Accela Civic Platform Citizen Access portal relies on the client to restrict file types for uploads, which allows remote authenticated users to execute arbitrary code via modified _EventArgument and filename parameters. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-28 | View | |
20879 | CVE-2016-5662 | Accellion Kiteworks appliances before kw2016.03.00 use setuid-root permissions for /opt/bin/cli, which allows local users to gain privileges via unspecified vectors. | 2 | 7.2 | High | 2017-01-19 | 2016-11-28 | View | |
51761 | CVE-2009-4644 | Accellion Secure File Transfer Appliance before 8_0_105 allows remote authenticated administrators to bypass the restricted shell and execute arbitrary commands via shell metacharacters to the ping command, as demonstrated by modifying the cli program. | 2 | 9 | High | 2017-01-07 | 2010-03-05 | View | |
51765 | CVE-2009-4648 | Accellion Secure File Transfer Appliance before 8_0_105 does not properly restrict access to sensitive commands and arguments that run with extra sudo privileges, which allows local administrators to gain privileges via (1) arbitrary arguments in the --file_move action in /usr/local/bin/admin.pl, or a hard link attack in (2) chmod or (3) a certain cp command. | 2 | 7.2 | High | 2017-01-07 | 2010-03-04 | View |
Page 574 of 17672, showing 5 records out of 88360 total, starting on record 2866, ending on 2870