NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80181  CVE-2002-1195  Cross-site scripting vulnerability (XSS) in the PHP interface for ht://Check 1.1 allows remote web servers to insert arbitrary HTML, including script, via a web page.    4.3  Medium  2017-01-05  2016-10-17  View
80182  CVE-2002-1196  editproducts.cgi in Bugzilla 2.14.x before 2.14.4, and 2.16.x before 2.16.1, when the "usebuggroups" feature is enabled and more than 47 groups are specified, does not properly calculate bit values for large numbers, which grants extra permissions to users via known features of Perl math that set multiple bits.    7.5  High  2017-01-05  2016-10-17  View
80183  CVE-2002-1197  bugzilla_email_append.pl in Bugzilla 2.14.x before 2.14.4, and 2.16.x before 2.16.1, allows remote attackers to execute arbitrary code via shell metacharacters in a system call to processmail.    7.5  High  2017-01-05  2016-10-17  View
80184  CVE-2002-1198  Bugzilla 2.16.x before 2.16.1 does not properly filter apostrophes from an email address during account creation, which allows remote attackers to execute arbitrary SQL via a SQL injection attack.    7.5  High  2017-01-05  2016-10-17  View
80185  CVE-2002-1199  The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.    Medium  2017-01-05  2016-10-17  View

Page 1103 of 17672, showing 5 records out of 88360 total, starting on record 5511, ending on 5515

Actions