NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11231  CVE-2011-4921  SQL injection vulnerability in usersettings.php in e107 0.7.26, and possibly other versions before 1.0.0, allows remote attackers to execute arbitrary SQL commands via the username parameter.    5.1  Medium  2017-01-07  2012-10-11  View
76767  CVE-2000-0525  OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon.    10  High  2017-01-05  2008-09-10  View
11487  CVE-2011-5227  Stack-based buffer overflow in the Syslog service (nssyslogd.exe) in Enterasys Network Management Suite (NMS) before 4.1.0.80 allows remote attackers to execute arbitrary code via a long PRIO field in a message to UDP port 514.    10  High  2017-01-07  2012-10-26  View
77023  CVE-2000-0782  netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.    Medium  2017-01-05  2008-09-05  View
11743  CVE-2010-0168  The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 before 3.6.2 does not apply scheme restrictions and policy restrictions to the image"s URL, which might allow remote attackers to cause a denial of service (application crash or hang) or hijack the functionality of the browser"s add-ons via a crafted SRC attribute of an IMG element, as demonstrated by remote command execution through an ssh: URL in a configuration that supports gnome-vfs with a nonstandard network.gnomevfs.supported-protocols setting.    7.6  High  2017-01-18  2010-08-21  View

Page 15095 of 17672, showing 5 records out of 88360 total, starting on record 75471, ending on 75475

Actions