NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12690  CVE-2010-1157  Apache Tomcat 5.5.0 through 5.5.29 and 6.0.0 through 6.0.26 might allow remote attackers to discover the server"s hostname or IP address by sending a request for a resource that requires (1) BASIC or (2) DIGEST authentication, and then reading the realm field in the WWW-Authenticate header in the reply.    2.6  Low  2017-01-18  2016-08-22  View
75155  CVE-1999-0487  The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files.    2.6  Low  2017-01-05  2008-09-09  View
45971  CVE-2012-4600  Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.14, 3.0.x before 3.0.16, and 3.1.x before 3.1.10, when Firefox or Opera is used, allows remote attackers to inject arbitrary web script or HTML via an e-mail message body with nested HTML tags.    2.6  Low  2017-01-19  2013-02-21  View
5012  CVE-2008-5228  Cross-site scripting (XSS) vulnerability in IBM Workplace Content Management (WCM) 6.0G and 6.1 before CF8, when a Page Navigation Component shows menu entries, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters in the URI, related to parameters "not being encoded."    2.6  Low  2017-01-03  2011-03-07  View
5268  CVE-2008-5519  The JK Connector (aka mod_jk) 1.2.0 through 1.2.26 in Apache Tomcat allows remote attackers to obtain sensitive information via an arbitrary request from an HTTP client, in opportunistic circumstances involving (1) a request from a different client that included a Content-Length header but no POST data or (2) a rapid series of requests, related to noncompliance with the AJP protocol"s requirements for requests containing Content-Length headers.    2.6  Low  2017-01-03  2010-05-04  View

Page 15338 of 17672, showing 5 records out of 88360 total, starting on record 76686, ending on 76690

Actions