NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6874  CVE-2008-7143  phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header.    6.8  Medium  2017-01-03  2009-09-09  View
72410  CVE-2004-2033  Orenosv 0.5.9f allows remote attackers to cause a denial of service (crash) via a long HTTP GET request.    Medium  2017-07-18  2017-07-10  View
7130  CVE-2017-5492  Cross-site request forgery (CSRF) vulnerability in the widget-editing accessibility-mode feature in WordPress before 4.7.1 allows remote attackers to hijack the authentication of unspecified victims for requests that perform a widgets-access action, related to wp-admin/includes/class-wp-screen.php and wp-admin/widgets.php.    6.8  Medium  2017-07-18  2017-07-17  View
72666  CVE-2004-2289  Microsoft Windows XP Explorer allows local users to execute arbitrary code via a system folder with a Desktop.ini file containing a .ShellClassInfo specifier with a CLSID value that is associated with an executable file.    10  High  2017-07-18  2017-07-10  View
7386  CVE-2011-0265  Buffer overflow in nnmRptConfig.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long data_select1 parameter.    10  High  2017-01-07  2011-01-20  View

Page 14747 of 17672, showing 5 records out of 88360 total, starting on record 73731, ending on 73735

Actions