NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14036 | CVE-2010-2580 | The SMTP service (MESMTPC.exe) in MailEnable 3.x and 4.25 does not properly perform a length check, which allows remote attackers to cause a denial of service (crash) via a long (1) email address in the MAIL FROM command, or (2) domain name in the RCPT TO command, which triggers an "unhandled invalid parameter error." | 2 | 5 | Medium | 2017-01-18 | 2010-09-16 | View | |
14292 | CVE-2010-2858 | Multiple cross-site scripting (XSS) vulnerabilities in news.php in SimpNews 2.47.03 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) layout and (2) sortorder parameters. | 2 | 4.3 | Medium | 2017-01-18 | 2010-07-26 | View | |
79828 | CVE-2002-0829 | Integer overflow in the Berkeley Fast File System (FFS) in FreeBSD 4.6.1 RELEASE-p4 and earlier allows local users to access arbitrary file contents within FFS to gain privileges by creating a file that is larger than allowed by the virtual memory system. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View | |
80084 | CVE-2002-1089 | rwcgi60 CGI program in Oracle Reports Server, by design, provides sensitive information such as the full pathname, which could enable remote attackers to use the information in additional attacks. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80340 | CVE-2002-1387 | The spray mode in traceroute-nanog (aka traceroute-ng) may allow local users to overwrite arbitrary memory locations via an array index overflow using the nprobes (number of probes) argument. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View |
Page 16117 of 17672, showing 5 records out of 88360 total, starting on record 80581, ending on 80585