NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
12520 | CVE-2010-0984 | Acidcat CMS 3.5.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for databases/acidcat_3.mdb. | 2 | 5 | Medium | 2017-01-18 | 2010-03-17 | View | |
78056 | CVE-2001-0591 | Directory traversal vulnerability in Oracle JSP 1.0.x through 1.1.1 and Oracle 8.1.7 iAS Release 1.0.2 can allow a remote attacker to read or execute arbitrary .jsp files via a ".." (dot dot) attack. | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
12776 | CVE-2010-1244 | Cross-site request forgery (CSRF) vulnerability in createDestination.action in Apache ActiveMQ before 5.3.1 allows remote attackers to hijack the authentication of unspecified victims for requests that create queues via the JMSDestination parameter in a queue action. | 2 | 6.8 | Medium | 2017-01-18 | 2010-04-06 | View | |
78312 | CVE-2001-0869 | Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands. | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
13032 | CVE-2010-1508 | Heap-based buffer overflow in Apple QuickTime before 7.6.9 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Track Header (aka tkhd) atoms. | 2 | 9.3 | High | 2017-01-18 | 2013-11-02 | View |
Page 16236 of 17672, showing 5 records out of 88360 total, starting on record 81176, ending on 81180