NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70160 | CVE-2005-4571 | Cross-site scripting (XSS) vulnerability in myEZshop Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the Keyword parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
70416 | CVE-2005-4827 | Internet Explorer 6.0, and possibly other versions, allows remote attackers to bypass the same origin security policy and make requests outside of the intended domain by calling open on an XMLHttpRequest object (Microsoft.XMLHTTP) and using tab, newline, and carriage return characters within the first argument (method name), which is supported by some proxy servers that convert tabs to spaces. NOTE: this issue can be leveraged to conduct referer spoofing, HTTP Request Smuggling, and other attacks. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
75792 | CVE-1999-1142 | SunOS 4.1.2 and earlier allows local users to gain privileges via "LD_*" environmental variables to certain dynamically linked setuid or setgid programs such as (1) login, (2) su, or (3) sendmail, that change the real and effective user ids to the same user. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
77072 | CVE-2000-0838 | Fastream FUR HTTP server 1.0b allows remote attackers to cause a denial of service via a long GET request. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
77584 | CVE-2001-0104 | MDaemon Pro 3.5.1 and earlier allows local users to bypass the "lock server" security setting by pressing the Cancel button at the password prompt, then pressing the enter key. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View |
Page 127 of 17672, showing 5 records out of 88360 total, starting on record 631, ending on 635