NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55442  CVE-2007-3290  categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a " (quote) character in the cid parameter, which reveals the path in a forced SQL error message.    9.3  High  2017-01-07  2008-11-15  View
78207  CVE-2001-0756  CatalogMgr.pl in VirtualCatalog (incorrectly claimed to be in VirtualCart) allows remote attackers to execute arbitrary code via the template parameter.    7.5  High  2017-01-05  2016-10-17  View
5273  CVE-2008-5524  CAT-QuickHeal 10.00 and possibly 9.50, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.    9.3  High  2017-01-03  2009-01-29  View
79245  CVE-2002-0235  Castelle FaxPress, possibly 6.3 and other versions, when configured to use the Network print queue, allows attackers to obtain the username and password by submitting an incorrect login, which causes Faxpress to leak the correct username and password in plaintext in an error event.    7.5  High  2017-01-05  2008-09-05  View
84665  CVE-2017-5042  Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.    3.3  Low  2017-07-18  2017-06-30  View

Page 15367 of 17672, showing 5 records out of 88360 total, starting on record 76831, ending on 76835

Actions