NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11242 | CVE-2011-4940 | The list_directory function in Lib/SimpleHTTPServer.py in SimpleHTTPServer in Python before 2.5.6c1, 2.6.x before 2.6.7 rc2, and 2.7.x before 2.7.2 does not place a charset parameter in the Content-Type HTTP header, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks against Internet Explorer 7 via UTF-7 encoding. | 2 | 2.6 | Low | 2017-01-07 | 2013-05-14 | View | |
76778 | CVE-2000-0536 | xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverse DNS entry. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
11498 | CVE-2011-5238 | google-checkout-php-sample-code before 1.3.2 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-07 | 2012-11-06 | View | |
77034 | CVE-2000-0793 | Norton AntiVirus 5.00.01C with the Novell Netware client does not properly restart the auto-protection service after the first user has logged off of the system. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
11754 | CVE-2010-0179 | Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response. | 2 | 5.1 | Medium | 2017-01-18 | 2011-01-19 | View |
Page 16357 of 17672, showing 5 records out of 88360 total, starting on record 81781, ending on 81785