NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80706 | CVE-2002-1755 | tinc 1.0pre3 and 1.0pre4 VPN does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on CBC. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
80707 | CVE-2002-1756 | ACDSee 4.0 allows remote attackers to cause a denial of service (crash) via an .ais file with a long file description field, which is not properly handled when the file properties of the file are viewed. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
80708 | CVE-2002-1757 | PHProjekt 2.0 through 3.1 relies on the $PHP_SELF variable for authentication, which allows remote attackers to bypass authentication for scripts via a request to a .php file with sms in the URL, which is included in the PATH_INFO portion of the $PHP_SELF variable, as demonstrated using mail_send.php/sms. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
80709 | CVE-2002-1758 | PHProjekt 2.0 through 3.1 allows remote attackers to view or modify data via requests to certain scripts that do not verify if the user is logged in. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
80710 | CVE-2002-1759 | The upload function in PHProjekt 2.0 through 3.1 does not properly verify certain variables related to uploaded data, which allows remote attackers to cause PHProjekt to process arbitrary files. | 2 | 5 | Medium | 2017-07-18 | 2017-07-11 | View |
Page 1208 of 17672, showing 5 records out of 88360 total, starting on record 6036, ending on 6040