NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
13591 | CVE-2010-2104 | Directory traversal vulnerability in Orbit Downloader 3.0.0.4 and 3.0.0.5 allows user-assisted remote attackers to write arbitrary files via a metalink file containing directory traversal sequences in the name attribute of a file element. | 2 | 4.3 | Medium | 2017-01-18 | 2010-05-28 | View | |
79127 | CVE-2002-0111 | Directory traversal vulnerability in Funsoft Dino"s Webserver 1.2 and earlier allows remote attackers to read files or execute arbitrary commands via a .. (dot dot) in the URL. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
13847 | CVE-2010-2370 | Unspecified vulnerability in the Oracle Business Process Management component in Oracle Fusion Middleware 5.7 MP3, 6.0 MP5, and 10.3 MP2 allows remote attackers to affect integrity, related to BPM. | 2 | 4.3 | Medium | 2017-01-18 | 2012-10-22 | View | |
79383 | CVE-2002-0375 | Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
14103 | CVE-2010-2654 | Multiple cross-site scripting (XSS) vulnerabilities on the IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, allow remote attackers to inject arbitrary web script or HTML via the (1) INDEX or (2) IPADDR parameter to private/cindefn.php, (3) the domain parameter to private/power_management_policy_options.php, the slot parameter to (4) private/pm_temp.php or (5) private/power_module.php, (6) the WEBINDEX parameter to private/blade_leds.php, or (7) the SLOT parameter to private/ipmi_bladestatus.php. | 2 | 4.3 | Medium | 2017-01-18 | 2010-07-20 | View |
Page 1583 of 17672, showing 5 records out of 88360 total, starting on record 7911, ending on 7915