NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
73636 | CVE-2003-0509 | SQL injection vulnerability in Cyberstrong eShop 4.2 and earlier allows remote attackers to steal authentication information and gain privileges via the ProductCode parameter in (1) 10expand.asp, (2) 10browse.asp, and (3) 20review.asp. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
73637 | CVE-2003-0510 | Format string vulnerability in ezbounce 1.0 through 1.50 allows remote attackers to execute arbitrary code via the "sessions" command. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
73638 | CVE-2003-0511 | The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of service (reload) via a malformed URL. | 2 | 5 | Medium | 2017-01-03 | 2009-03-04 | View | |
73639 | CVE-2003-0512 | Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge. | 2 | 5 | Medium | 2017-01-03 | 2009-03-04 | View | |
73640 | CVE-2003-0513 | Microsoft Internet Explorer allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot) directory traversal sequences in a URL, which causes Internet Explorer to send the cookie outside the specified URL subsets, e.g. to a vulnerable application that runs on the same server as the target application. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1442 of 17672, showing 5 records out of 88360 total, starting on record 7206, ending on 7210