NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
77783  CVE-2001-0305  Directory traversal vulnerability in store.cgi in Thinking Arts ES.One package allows remote attackers to read arbitrary files via a .. (dot dot) in the StartID parameter.    Medium  2017-01-05  2008-09-05  View
12503  CVE-2010-0967  Multiple directory traversal vulnerabilities in Geekhelps ADMP 1.01, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the style parameter to (1) colorvoid/footer.php, (2) default-green/footer.php, (3) default-orange/footer.php, and (4) default/footer.php in themes/. NOTE: some of these details are obtained from third party information.    5.1  Medium  2017-01-18  2010-03-17  View
78039  CVE-2001-0574  Directory traversal vulnerability in MP3Mystic prior to 1.04b3 allows a remote attacker to download arbitrary files via a ".." (dot dot) in the URL.    Medium  2017-01-05  2008-09-05  View
12759  CVE-2010-1227  Cross-site scripting (XSS) vulnerability in Sun Java System Communications Express 6.2 and 6.3 allows remote attackers to inject arbitrary web script or HTML via the subject field of a message, as demonstrated by a subject containing an IMG element with a SRC attribute that performs a cross-site request forgery (CSRF) attack involving the cmd and argv parameters to cmd.msc.    4.3  Medium  2017-01-18  2011-01-26  View
78295  CVE-2001-0852  TUX HTTP server 2.1.0-2 in Red Hat Linux allows remote attackers to cause a denial of service via a long Host: header.    Medium  2017-01-05  2016-10-17  View

Page 15202 of 17672, showing 5 records out of 88360 total, starting on record 76006, ending on 76010

Actions