NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14629 | CVE-2010-3213 | Cross-site request forgery (CSRF) vulnerability in Microsoft Outlook Web Access (owa/ev.owa) 2007 through SP2 allows remote attackers to hijack the authentication of e-mail users for requests that perform Outlook requests, as demonstrated by setting the auto-forward rule. | 2 | 6.8 | Medium | 2017-01-18 | 2010-09-08 | View | |
80933 | CVE-2002-1982 | Directory traversal vulnerability in the list_directory function in Icecast 1.3.12 allows remote attackers to determine if a directory exists via a .. (dot dot) in the GET request, which returns different error messages depending on whether the directory exists or not. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
81189 | CVE-2002-2238 | Directory traversal vulnerability in the Kunani ODBC FTP Server 1.0.10 allows remote attackers to read arbitrary files via a ".." (dot dot backslash) in a GET request. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
16165 | CVE-2010-4930 | Cross-site scripting (XSS) vulnerability in index.php in @mail Webmail before 6.2.0 allows remote attackers to inject arbitrary web script or HTML via the MailType parameter in a mail/auth/processlogin action. | 2 | 4.3 | Medium | 2017-01-18 | 2012-02-13 | View | |
81701 | CVE-2015-8976 | Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 might allow remote attackers to inject arbitrary web script or HTML via vectors related to "old upgrade files." | 2 | 4.3 | Medium | 2017-02-08 | 2017-02-03 | View |
Page 1356 of 17672, showing 5 records out of 88360 total, starting on record 6776, ending on 6780