NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
13514 | CVE-2010-2023 | transports/appendfile.c in Exim before 4.72, when a world-writable sticky-bit mail directory is used, does not verify the st_nlink field of mailbox files, which allows local users to cause a denial of service or possibly gain privileges by creating a hard link to another user"s file. | 2 | 4.4 | Medium | 2017-01-18 | 2011-02-17 | View | |
13770 | CVE-2010-2292 | Cross-site scripting (XSS) vulnerability in the Ping tools web interface in Dlink Di-604 router allows remote attackers to inject arbitrary web script or HTML via the IP field. | 2 | 4.3 | Medium | 2017-01-18 | 2010-06-18 | View | |
14282 | CVE-2010-2848 | Directory traversal vulnerability in assets/captcha/includes/alikon/playcode.php in the InterJoomla ArtForms (com_artforms) component 2.1b7.2 RC2 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the l parameter. | 2 | 5 | Medium | 2017-01-18 | 2010-07-26 | View | |
80074 | CVE-2002-1079 | Directory traversal vulnerability in Abyss Web Server 1.0.3 allows remote attackers to read arbitrary files via .. (dot-dot backslash) sequences in an HTTP GET request. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80330 | CVE-2002-1377 | vim 6.0 and 6.1, and possibly other versions, allows attackers to execute arbitrary commands using the libcall feature in modelines, which are not sandboxed but may be executed when vim is used to edit a malicious file, as demonstrated using mutt. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View |
Page 15762 of 17672, showing 5 records out of 88360 total, starting on record 78806, ending on 78810