NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
77522  CVE-2001-0042  PHP 3.x (PHP3) on Apache 1.3.6 allows remote attackers to read arbitrary files via a modified .. (dot dot) attack containing "%5c" (encoded backslash) sequences.    Medium  2017-01-05  2008-09-05  View
12242  CVE-2010-0696  Directory traversal vulnerability in includes/download.php in the JoomlaWorks AllVideos (Jw_allVideos) plugin 3.0 through 3.2 for Joomla! allows remote attackers to read arbitrary files via a ./../.../ (modified dot dot) in the file parameter.    Medium  2017-01-18  2013-08-21  View
12498  CVE-2010-0962  The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specified in a PORT command from a client, which allows remote attackers to leverage intranet FTP servers for arbitrary TCP forwarding via a crafted PORT command.    Medium  2017-01-18  2010-03-12  View
12754  CVE-2010-1222  CA XOsoft r12.5 does not properly perform authentication, which allows remote attackers to obtain potentially sensitive information via a SOAP request.    Medium  2017-01-18  2010-04-08  View
13010  CVE-2010-1486  Multiple cross-site scripting (XSS) vulnerabilities in _invoice.asp in CactuShop before 6.155 allow remote attackers to inject arbitrary web script or HTML via the (1) billing address or (2) shipping address.    4.3  Medium  2017-01-18  2010-05-26  View

Page 16044 of 17672, showing 5 records out of 88360 total, starting on record 80216, ending on 80220

Actions