NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15039 | CVE-2010-3682 | Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using EXPLAIN with crafted "SELECT ... UNION ... ORDER BY (SELECT ... WHERE ...)" statements, which triggers a NULL pointer dereference in the Item_singlerow_subselect::store function. | 2 | 4 | Medium | 2017-01-18 | 2013-01-21 | View | |
| 80831 | CVE-2002-1880 | LokwaBB 1.2.2 allows remote attackers to read arbitrary messages by modifying the pmid parameter to pm.php. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 15807 | CVE-2010-4555 | Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.21 and earlier allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) drop-down selection lists, (2) the > (greater than) character in the SquirrelSpell spellchecking plugin, and (3) errors associated with the Index Order (aka options_order) page. | 2 | 4.3 | Medium | 2017-01-18 | 2012-02-13 | View | |
| 81343 | CVE-2002-2392 | Winamp 2.65 through 3.0 stores skin files in a predictable file location, which allows remote attackers to execute arbitrary code via a URL reference to (1) wsz and (2) wal files that contain embedded code. | 2 | 6.4 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 16063 | CVE-2010-4828 | Multiple cross-site scripting (XSS) vulnerabilities in SolarWinds Orion Network Performance Monitor (NPM) 10.1 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to MapView.aspx; NetObject parameter to (2) NodeDetails.aspx and (3) InterfaceDetails.aspx; and the (4) ChartName parameter to CustomChart.aspx. | 2 | 4.3 | Medium | 2017-01-18 | 2011-09-21 | View |
Page 15379 of 17672, showing 5 records out of 88360 total, starting on record 76891, ending on 76895