NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6874 | CVE-2008-7143 | phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-09 | View | |
| 72410 | CVE-2004-2033 | Orenosv 0.5.9f allows remote attackers to cause a denial of service (crash) via a long HTTP GET request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 7130 | CVE-2017-5492 | Cross-site request forgery (CSRF) vulnerability in the widget-editing accessibility-mode feature in WordPress before 4.7.1 allows remote attackers to hijack the authentication of unspecified victims for requests that perform a widgets-access action, related to wp-admin/includes/class-wp-screen.php and wp-admin/widgets.php. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-17 | View | |
| 72666 | CVE-2004-2289 | Microsoft Windows XP Explorer allows local users to execute arbitrary code via a system folder with a Desktop.ini file containing a .ShellClassInfo specifier with a CLSID value that is associated with an executable file. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
| 7386 | CVE-2011-0265 | Buffer overflow in nnmRptConfig.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long data_select1 parameter. | 2 | 10 | High | 2017-01-07 | 2011-01-20 | View |
Page 14747 of 17672, showing 5 records out of 88360 total, starting on record 73731, ending on 73735