NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81052  CVE-2002-2101  Microsoft Outlook 2002 allows remote attackers to execute arbitrary JavaScript code, even when scripting is disabled, via an "about:" or "javascript:" URI in the href attribute of an "a" tag.    7.5  High  2017-01-05  2008-09-05  View
16284  CVE-2010-5049  SQL injection vulnerability in events.php in Zabbix 1.8.1 and earlier allows remote attackers to execute arbitrary SQL commands via the nav_time parameter.    7.5  High  2017-01-18  2011-11-23  View
18588  CVE-2016-2355  SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.    7.5  High  2017-01-19  2016-12-22  View
21660  CVE-2016-7124  ext/standard/var_unserializer.c in PHP before 5.6.25 and 7.x before 7.0.10 mishandles certain invalid objects, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted serialized data that leads to a (1) __destruct call or (2) magic method call.    7.5  High  2017-01-19  2016-11-28  View
87708  CVE-2017-10788  The DBD::mysql module through 4.043 for Perl allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact by triggering (1) certain error responses from a MySQL server or (2) a loss of a network connection to a MySQL server. The use-after-free defect was introduced by relying on incorrect Oracle mysql_stmt_close documentation and code examples.    7.5  High  2017-07-18  2017-07-12  View

Page 14578 of 17672, showing 5 records out of 88360 total, starting on record 72886, ending on 72890

Actions