NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
13537 | CVE-2010-2046 | Multiple cross-site scripting (XSS) vulnerabilities in the ActiveHelper LiveHelp (com_activehelper_livehelp) component 2.0.3 for Joomla! allow remote attackers to inject arbitrary web script or HTML via (1) the DOMAINID parameter to server/cookies.php or (2) the SERVER parameter to server/index.php. | 2 | 4.3 | Medium | 2017-01-18 | 2010-05-26 | View | |
79073 | CVE-2002-0057 | XMLHTTP control in Microsoft XML Core Services 2.6 and later does not properly handle IE Security Zone settings, which allows remote attackers to read arbitrary files by specifying a local file as an XML Data Source. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
14049 | CVE-2010-2596 | The OJPEGPostDecode function in tif_ojpeg.c in LibTIFF 3.9.0 and 3.9.2, as used in tiff2ps, allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted TIFF image, related to "downsampled OJPEG input." | 2 | 4.3 | Medium | 2017-01-18 | 2013-05-14 | View | |
80097 | CVE-2002-1102 | The LAN-to-LAN IPSEC capability for Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.4, allows remote attackers to cause a denial of service via an incoming LAN-to-LAN connection with an existing security association with another device on the remote network, which causes the concentrator to remove the previous connection. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
15073 | CVE-2010-3716 | The be_user_creation task in TYPO3 4.2.x before 4.2.15 and 4.3.x before 4.3.7 allows remote authenticated users to gain privileges via a crafted POST request that creates a user account with arbitrary group memberships. | 2 | 6 | Medium | 2017-01-18 | 2010-10-27 | View |
Page 16580 of 17672, showing 5 records out of 88360 total, starting on record 82896, ending on 82900