NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71346 | CVE-2004-0944 | The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 generates easily predictable web session IDs, which allows remote attackers to hijack other sessions via the parentsessionid cookie. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
74418 | CVE-2003-1348 | Cross-site scripting (XSS) vulnerability in guestbook.cgi in ftls.org Guestbook 1.1 allows remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) name, or (3) title field. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
76978 | CVE-2000-0737 | The Service Control Manager (SCM) in Windows 2000 creates predictable named pipes, which allows a local user with console access to gain administrator privileges, aka the "Service Control Manager Named Pipe Impersonation" vulnerability. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
77234 | CVE-2000-1000 | Format string vulnerability in AOL Instant Messenger (AIM) 4.1.2010 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by transferring a file whose name includes format characters. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78002 | CVE-2001-0535 | Example applications (Exampleapps) in ColdFusion Server 4.x do not properly restrict prevent access from outside the local host"s domain, which allows remote attackers to conduct upload, read, or execute files by spoofing the "HTTP Host" (CGI.Host) variable in (1) the "Web Publish" example script, and (2) the "Email" example script. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View |
Page 1189 of 17672, showing 5 records out of 88360 total, starting on record 5941, ending on 5945