NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80601 | CVE-2002-1648 | Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail before 1.2.3 allows remote attackers to send email as other users via an IMG URL with modified send_to and subject parameters. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
80602 | CVE-2002-1649 | Cross-site scripting (XSS) vulnerability in read_body.php in SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary Javascript via a javascript: URL in an IMG tag. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
80603 | CVE-2002-1650 | The spell checker plugin (check_me.mod.php) for SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary commands via a modified sqspell_command parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
80604 | CVE-2002-1651 | Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly due to certain error messages from template pages that use the (1) vformat or (2) vfilter functions. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
80605 | CVE-2002-1652 | Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 1187 of 17672, showing 5 records out of 88360 total, starting on record 5931, ending on 5935