NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81281 | CVE-2002-2330 | Cross-site scripting (XSS) vulnerability in stat.pl in StatsPlus 1.25 allows remote attackers to inject arbitrary web script or HTML via (1) HTTP_USER_AGENT or (2) HTTP_REFERER, which is written to stats.html and executed in client browsers. | 2 | 5 | Medium | 2017-01-05 | 2010-08-30 | View | |
81282 | CVE-2002-2331 | W3Mail 1.0.2 through 1.0.5 with server side scripting (SSI) enabled in the attachments directory does not properly restrict the types of files that can be uploaded as attachments, which allows remote attackers to execute arbitrary code by sending code in MIME attachments, then requesting the attachments. | 2 | 5.8 | Medium | 2017-01-05 | 2008-09-05 | View | |
81283 | CVE-2002-2332 | Buffer overflow in Opera 6.01 allows remote attackers to cause a denial of service (crash) via an IMG tag with large width and height attributes. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
81284 | CVE-2002-2333 | Buffer overflow in konqueror in KDE 2.1 through 3.0 and 3.0.2 allows remote attackers to cause a denial of service (crash) via an IMG tag with large width and height attributes. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
81285 | CVE-2002-2334 | Joe text editor 2.8 through 2.9.7 does not remove the group and user setuid bits for backup files, which could allow local users to execute arbitrary setuid and setgid root programs when root edits scripts owned by other users. | 2 | 3.6 | Low | 2017-01-05 | 2008-09-05 | View |
Page 1323 of 17672, showing 5 records out of 88360 total, starting on record 6611, ending on 6615