NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88143 | CVE-2017-8559 | Microsoft Exchange Server 2010 SP3, Exchange Server 2013 SP3, Exchange Server 2013 CU16, and Exchange Server 2016 CU5 allows an elevation of privilege vulnerability due to the way that Exchange Outlook Web Access (OWA) handles web requests, aka Microsoft Exchange Cross-Site Scripting Vulnerability. This CVE ID is unique from CVE-2017-8560. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-14 | View | |
45135 | CVE-2012-3546 | org/apache/catalina/realm/RealmBase.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.30, when FORM authentication is used, allows remote attackers to bypass security-constraint checks by leveraging a previous setUserPrincipal call and then placing /j_security_check at the end of a URI. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-22 | View | |
65872 | CVE-2005-0092 | Unknown vulnerability in the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch, when running on x86 with the hugemem kernel, allows local users to cause a denial of service (crash). | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
66128 | CVE-2005-0368 | Multiple SQL injection vulnerabilities in CMScore allow remote attackers to execute arbitrary SQL commands via the (1) EntryID or (2) searchterm parameter to index.php, or (3) username parameter to authenticate.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
66896 | CVE-2005-1147 | calendar.pl in CalendarScript 3.20 allows remote attackers to obtain sensitive information via invalid (1) calendar or (2) template parameters, which leaks the full pathname and debug information. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16118 of 17672, showing 5 records out of 88360 total, starting on record 80586, ending on 80590