NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78594 | CVE-2001-1159 | load_prefs.php and supporting include files in SquirrelMail 1.0.4 and earlier do not properly initialize certain PHP variables, which allows remote attackers to (1) view sensitive files via the config_php and data_dir options, and (2) execute arbitrary code by using options_order.php to upload a message that could be interpreted as PHP. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
13314 | CVE-2010-1815 | Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving scrollbars. | 2 | 6.8 | Medium | 2017-01-18 | 2012-03-30 | View | |
78850 | CVE-2001-1416 | Multiple cross-site scripting (XSS) vulnerabilities in the log messages in certain Alpha versions of AOL Instant Messenger (AIM) 4.4 allow remote attackers to execute arbitrary web script or HTML via an image in the (1) DATA, (2) STYLE, or (3) BINARY tags. | 2 | 5.1 | Medium | 2017-01-05 | 2008-09-05 | View | |
13570 | CVE-2010-2083 | Microsoft Dynamics GP has a default value of ACCESS for the system password, which might make it easier for remote authenticated users to bypass intended access restrictions via unspecified vectors. | 2 | 4 | Medium | 2017-01-18 | 2010-05-27 | View | |
79106 | CVE-2002-0090 | Buffer overflow in Low BandWidth X proxy (lbxproxy) in Solaris 8 allows local users to execute arbitrary code via a long display command line option. | 2 | 7.2 | High | 2017-01-05 | 2008-09-10 | View |
Page 157 of 17672, showing 5 records out of 88360 total, starting on record 781, ending on 785