NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
74199 | CVE-2003-1127 | Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via the HTTP TRACE method, which bypasses the preprocessor. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74455 | CVE-2003-1385 | ipchat.php in Invision Power Board 1.1.1 allows remote attackers to execute arbitrary PHP code, if register_globals is enabled, by modifying the root_path parameter to reference a URL on a remote web server that contains the code. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
9175 | CVE-2011-2383 | Microsoft Internet Explorer 9 and earlier does not properly restrict cross-zone drag-and-drop actions, which allows user-assisted remote attackers to read cookie files via vectors involving an IFRAME element with a SRC attribute containing an http: URL that redirects to a file: URL, as demonstrated by a Facebook game, related to a "cookiejacking" issue, aka "Drag and Drop Information Disclosure Vulnerability." NOTE: this vulnerability exists because of an incomplete fix in the Internet Explorer 9 release. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-27 | View | |
9943 | CVE-2011-3263 | zabbix_agentd in Zabbix before 1.8.6 and 1.9.x before 1.9.4 allows context-dependent attackers to cause a denial of service (CPU consumption) by executing the vfs.file.cksum command for a special device, as demonstrated by the /dev/urandom device. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
75479 | CVE-1999-0829 | HP Secure Web Console uses weak encryption. | 2 | 5 | Medium | 2017-01-05 | 2008-09-09 | View |
Page 16223 of 17672, showing 5 records out of 88360 total, starting on record 81111, ending on 81115