NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80609  CVE-2002-1656  X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the password, e.g. via sniffing or the users.txt data file, and providing it in a cookie.    7.5  High  2017-07-18  2017-07-10  View
15329  CVE-2010-4006  Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.    7.5  High  2017-01-18  2010-12-07  View
81121  CVE-2002-2170  Working Resources Inc. BadBlue Enterprise Edition 1.7 through 1.74 attempts to restrict administrator actions to the IP address of the local host, but does not provide additional authentication, which allows remote attackers to execute arbitrary code via a web page containing an HTTP POST request that accesses the dir.hts page on the localhost and adds an entire hard drive to be shared.    7.5  High  2017-01-05  2008-09-05  View
16097  CVE-2010-4862  SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to index.php.    7.5  High  2017-01-18  2013-07-25  View
82913  CVE-2016-6871  Integer overflow in bcmath in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors, which triggers a buffer overflow.    7.5  High  2017-02-28  2017-02-22  View

Page 15377 of 17672, showing 5 records out of 88360 total, starting on record 76881, ending on 76885

Actions