NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
74199  CVE-2003-1127  Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via the HTTP TRACE method, which bypasses the preprocessor.    Medium  2017-07-18  2017-07-10  View
74455  CVE-2003-1385  ipchat.php in Invision Power Board 1.1.1 allows remote attackers to execute arbitrary PHP code, if register_globals is enabled, by modifying the root_path parameter to reference a URL on a remote web server that contains the code.    6.8  Medium  2017-01-03  2008-09-05  View
9175  CVE-2011-2383  Microsoft Internet Explorer 9 and earlier does not properly restrict cross-zone drag-and-drop actions, which allows user-assisted remote attackers to read cookie files via vectors involving an IFRAME element with a SRC attribute containing an http: URL that redirects to a file: URL, as demonstrated by a Facebook game, related to a "cookiejacking" issue, aka "Drag and Drop Information Disclosure Vulnerability." NOTE: this vulnerability exists because of an incomplete fix in the Internet Explorer 9 release.    4.3  Medium  2017-01-07  2011-09-27  View
9943  CVE-2011-3263  zabbix_agentd in Zabbix before 1.8.6 and 1.9.x before 1.9.4 allows context-dependent attackers to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device.    Medium  2017-01-07  2011-09-06  View
75479  CVE-1999-0829  HP Secure Web Console uses weak encryption.    Medium  2017-01-05  2008-09-09  View

Page 16223 of 17672, showing 5 records out of 88360 total, starting on record 81111, ending on 81115

Actions