NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11741  CVE-2010-0166  The gfxTextRun::SanitizeGlyphRuns function in gfx/thebes/src/gfxFont.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 on Mac OS X, when the Core Text API is used, does not properly perform certain deletions, which allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via an HTML document containing invisible Unicode characters, as demonstrated by the U+FEFF, U+FFF9, U+FFFA, and U+FFFB characters.    5.1  Medium  2017-01-18  2012-01-26  View
77277  CVE-2000-1043  Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.    10  High  2017-01-05  2008-09-05  View
11997  CVE-2010-0441  Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.    Medium  2017-01-18  2010-04-08  View
77533  CVE-2001-0053  One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.    10  High  2017-01-05  2008-09-05  View
12253  CVE-2010-0707  Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote attackers to hijack the authentication of an administrator for requests that create new administrative users. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-18  2010-03-02  View

Page 15310 of 17672, showing 5 records out of 88360 total, starting on record 76546, ending on 76550

Actions