NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12520  CVE-2010-0984  Acidcat CMS 3.5.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct request for databases/acidcat_3.mdb.    Medium  2017-01-18  2010-03-17  View
78056  CVE-2001-0591  Directory traversal vulnerability in Oracle JSP 1.0.x through 1.1.1 and Oracle 8.1.7 iAS Release 1.0.2 can allow a remote attacker to read or execute arbitrary .jsp files via a ".." (dot dot) attack.    7.5  High  2017-01-05  2008-09-10  View
12776  CVE-2010-1244  Cross-site request forgery (CSRF) vulnerability in createDestination.action in Apache ActiveMQ before 5.3.1 allows remote attackers to hijack the authentication of unspecified victims for requests that create queues via the JMSDestination parameter in a queue action.    6.8  Medium  2017-01-18  2010-04-06  View
78312  CVE-2001-0869  Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.    7.5  High  2017-01-05  2008-09-10  View
13032  CVE-2010-1508  Heap-based buffer overflow in Apple QuickTime before 7.6.9 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Track Header (aka tkhd) atoms.    9.3  High  2017-01-18  2013-11-02  View

Page 16236 of 17672, showing 5 records out of 88360 total, starting on record 81176, ending on 81180

Actions