NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
77781  CVE-2001-0303  tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.    Medium  2017-01-05  2008-09-05  View
12501  CVE-2010-0965  Jevci Siparis Formu Scripti stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for siparis.mdb.    Medium  2017-01-18  2010-03-16  View
13013  CVE-2010-1489  The XSS Filter in Microsoft Internet Explorer 8 does not properly perform neutering for the SCRIPT tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, a different issue than CVE-2009-4074.    4.3  Medium  2017-01-18  2011-07-18  View
13269  CVE-2010-1767  Cross-site request forgery (CSRF) vulnerability in loader/DocumentThreadableLoader.cpp in WebCore in WebKit before r57041, as used in Google Chrome before 4.1.249.1059, allows remote attackers to hijack the authentication of unspecified victims via a crafted synchronous preflight XMLHttpRequest operation.    6.8  Medium  2017-01-18  2011-07-18  View
14293  CVE-2010-2859  news.php in SimpNews 2.47.3 and earlier allows remote attackers to obtain sensitive information via an invalid lang parameter, which reveals the installation path in an error message.    Medium  2017-01-18  2010-07-26  View

Page 16153 of 17672, showing 5 records out of 88360 total, starting on record 80761, ending on 80765

Actions