NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
13081 | CVE-2010-1558 | Unspecified vulnerability in HP Multifunction Peripheral (MFP) Digital Sending Software before 4.18.3 allows local users to bypass intended restrictions on the MFP "Send to e-mail" feature, and obtain sensitive information, via unknown vectors. | 2 | 4.7 | Medium | 2017-01-18 | 2010-05-21 | View | |
79129 | CVE-2002-0113 | EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform. | 2 | 4.6 | Medium | 2017-01-05 | 2012-03-29 | View | |
13849 | CVE-2010-2372 | Unspecified vulnerability in the Oracle Transportation Management component in Oracle Supply Chain Products Suite 6.1.1 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2010-2371. | 2 | 4.3 | Medium | 2017-01-18 | 2012-10-22 | View | |
14105 | CVE-2010-2656 | The IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, stores sensitive information under the web root with insufficient access control, which allows remote attackers to download (1) logs or (2) core files via direct requests, as demonstrated by a request for private/sdc.tgz. | 2 | 5 | Medium | 2017-01-18 | 2010-07-20 | View | |
14617 | CVE-2010-3201 | Cross-site scripting (XSS) vulnerability in NetWin Surgemail before 4.3g allows remote attackers to inject arbitrary web script or HTML via the username_ex parameter to the surgeweb program. | 2 | 4.3 | Medium | 2017-01-18 | 2011-01-11 | View |
Page 909 of 17672, showing 5 records out of 88360 total, starting on record 4541, ending on 4545