NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80585 | CVE-2002-1632 | Oracle 9i Application Server (9iAS) installs multiple sample pages that allow remote attackers to obtain environment variables and other sensitive information via (1) info.jsp, (2) printenv, (3) echo, or (4) echo2. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View | |
15305 | CVE-2010-3977 | Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters. | 2 | 4.3 | Medium | 2017-01-18 | 2010-11-06 | View | |
15817 | CVE-2010-4567 | Bugzilla before 3.2.10, 3.4.x before 3.4.10, 3.6.x before 3.6.4, and 4.0.x before 4.0rc2 does not properly handle whitespace preceding a (1) javascript: or (2) data: URI, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the URL (aka bug_file_loc) field. | 2 | 4.3 | Medium | 2017-01-18 | 2011-10-25 | View | |
16073 | CVE-2010-4838 | SQL injection vulnerability in the JSupport (com_jsupport) component 1.5.6 for Joomla! allows remote authenticated users, with Public Back-end permissions, to execute arbitrary SQL commands via the alpha parameter in a (1) listTickets or (2) listFaqs action to administrator/index.php. | 2 | 6 | Medium | 2017-01-18 | 2012-02-13 | View | |
81609 | CVE-2017-3810 | A vulnerability in the web framework of Cisco Prime Service Catalog could allow an authenticated, remote attacker to conduct a web URL redirect attack against a user who is logged in to an affected system. More Information: CSCvb21745. Known Affected Releases: 10.0_R2_tanggula. | 2 | 4.9 | Medium | 2017-02-15 | 2017-02-08 | View |
Page 15729 of 17672, showing 5 records out of 88360 total, starting on record 78641, ending on 78645