NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
7914 | CVE-2011-0887 | The web management portal on the SMC SMCD3G-CCR (aka Comcast Business Gateway) with firmware before 1.4.0.49.2 uses predictable session IDs based on time values, which makes it easier for remote attackers to hijack sessions via a brute-force attack on the userid cookie. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-21 | View | |
73450 | CVE-2003-0316 | Venturi Client before 2.2, as used in certain Fourelle and Venturi Wireless products, can be used as an open proxy for various protocols, including an open relay for SMTP, which allows it to be abused by spammers. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
8170 | CVE-2011-1202 | The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function. | 2 | 5 | Medium | 2017-01-07 | 2017-01-06 | View | |
73706 | CVE-2003-0588 | admin.php in Digi-news 1.1 allows remote attackers to bypass authentication via a cookie with the username set to the name of the administrator, which satisfies an improper condition in admin.php that does not require a correct password. | 2 | 10 | High | 2017-01-03 | 2016-10-17 | View | |
8426 | CVE-2011-1494 | Integer overflow in the _ctl_do_mpt_command function in drivers/scsi/mpt2sas/mpt2sas_ctl.c in the Linux kernel 2.6.38 and earlier might allow local users to gain privileges or cause a denial of service (memory corruption) via an ioctl call specifying a crafted value that triggers a heap-based buffer overflow. | 2 | 6.9 | Medium | 2017-01-07 | 2015-05-11 | View |
Page 16352 of 17672, showing 5 records out of 88360 total, starting on record 81756, ending on 81760