NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 13743 | CVE-2010-2265 | Cross-site scripting (XSS) vulnerability in the GetServerName function in sysinfo/commonFunc.js in Microsoft Windows Help and Support Center for Windows XP and Windows Server 2003 allows remote attackers to inject arbitrary web script or HTML via the svr parameter to sysinfo/sysinfomain.htm. NOTE: this can be leveraged with CVE-2010-1885 to execute arbitrary commands without user interaction. | 2 | 4.3 | Medium | 2017-01-18 | 2010-06-15 | View | |
| 13999 | CVE-2010-2541 | Buffer overflow in ftmulti.c in the ftmulti demo program in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file. | 2 | 6.8 | Medium | 2017-01-18 | 2012-12-18 | View | |
| 79535 | CVE-2002-0530 | Cross-site scripting vulnerability in Novell Web Search 2.0.1 allows remote attackers to execute arbitrary script as other Web Search users via the search parameter. | 2 | 5.1 | Medium | 2017-01-05 | 2008-09-10 | View | |
| 79791 | CVE-2002-0792 | The web management interface for Cisco Content Service Switch (CSS) 11000 switches allows remote attackers to cause a denial of service (soft reset) via (1) an HTTPS POST request, or (2) malformed XML data. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 14511 | CVE-2010-3091 | The OpenID module in Drupal 6.x before 6.18, and the OpenID module 5.x before 5.x-1.4 for Drupal, violates the OpenID 2.0 protocol by not verifying the openid.return_to value, which allows remote attackers to bypass authentication by leveraging an assertion from an OpenID provider. | 2 | 5 | Medium | 2017-01-18 | 2010-09-30 | View |
Page 14810 of 17672, showing 5 records out of 88360 total, starting on record 74046, ending on 74050