NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
77781 | CVE-2001-0303 | tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
12501 | CVE-2010-0965 | Jevci Siparis Formu Scripti stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for siparis.mdb. | 2 | 5 | Medium | 2017-01-18 | 2010-03-16 | View | |
13013 | CVE-2010-1489 | The XSS Filter in Microsoft Internet Explorer 8 does not properly perform neutering for the SCRIPT tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, a different issue than CVE-2009-4074. | 2 | 4.3 | Medium | 2017-01-18 | 2011-07-18 | View | |
13269 | CVE-2010-1767 | Cross-site request forgery (CSRF) vulnerability in loader/DocumentThreadableLoader.cpp in WebCore in WebKit before r57041, as used in Google Chrome before 4.1.249.1059, allows remote attackers to hijack the authentication of unspecified victims via a crafted synchronous preflight XMLHttpRequest operation. | 2 | 6.8 | Medium | 2017-01-18 | 2011-07-18 | View | |
14293 | CVE-2010-2859 | news.php in SimpNews 2.47.3 and earlier allows remote attackers to obtain sensitive information via an invalid lang parameter, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-18 | 2010-07-26 | View |
Page 16153 of 17672, showing 5 records out of 88360 total, starting on record 80761, ending on 80765