NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
78819  CVE-2001-1385  The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the "engine = off" option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the source code of PHP scripts.    Medium  2017-01-05  2016-10-17  View
13539  CVE-2010-2048  Multiple cross-site scripting (XSS) vulnerabilities in the Heartbeat module 6.x before 6.x-4.9 for Drupal allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-18  2010-05-26  View
79075  CVE-2002-0059  The decompression algorithm in zlib 1.1.3 and earlier, as used in many different utilities and packages, causes inflateEnd to release certain memory more than once (a "double free"), which may allow local and remote attackers to execute arbitrary code via a block of malformed compression data.    7.5  High  2017-01-05  2008-09-10  View
13795  CVE-2010-2317  Multiple SQL injection vulnerabilities in WmsCms 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) search, (2) sbr, (3) pid, (4) sbl, and (5) FilePath parameters to default.asp; and the (6) sbr, (7) pr, and (8) psPrice parameters to printpage.asp.    7.5  High  2017-01-18  2010-06-18  View
79331  CVE-2002-0321  Yahoo! Messenger 5.0 allows remote attackers to spoof other users by modifying the username and using the spoofed username for social engineering or denial of service (flooding) attacks.    Medium  2017-01-05  2016-10-17  View

Page 15722 of 17672, showing 5 records out of 88360 total, starting on record 78606, ending on 78610

Actions