NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 18404 | CVE-2016-2107 | The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding check, which allows remote attackers to obtain sensitive cleartext information via a padding-oracle attack against an AES CBC session. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-0169. | 2 | 2.6 | Low | 2017-06-12 | 2017-06-08 | View | |
| 61924 | CVE-2006-3245 | Multiple cross-site scripting (XSS) vulnerabilities in activatemember in mvnForum 1.0 GA and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) member and (2) activatecode parameters. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 70885 | CVE-2004-0445 | The SYMDNS.SYS driver in Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allows remote attackers to cause a denial of service (CPU consumption from infinite loop) via a DNS response with a compressed name pointer that points to itself. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 28645 | CVE-2015-8487 | Cybozu Office 9.0.0 through 10.3 allows remote attackers to discover CSRF tokens via unspecified vectors, a different vulnerability than CVE-2015-8488. | 2 | 2.6 | Low | 2017-01-19 | 2016-02-22 | View | |
| 61413 | CVE-2006-2728 | Cross-site scripting (XSS) vulnerability in superalbum/index.php in Photoalbum B&W 1.3 allows remote attackers to inject arbitrary web script or HTML via the pic parameter. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View |
Page 15398 of 17672, showing 5 records out of 88360 total, starting on record 76986, ending on 76990