NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80610  CVE-2002-1657  PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack.    Medium  2017-07-18  2017-07-10  View
15330  CVE-2010-4007  Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057.    Medium  2017-01-18  2010-10-21  View
15586  CVE-2010-4331  Multiple cross-site scripting (XSS) vulnerabilities in Seo Panel 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) default_news or (2) sponsors cookies, which are not properly handled by (a) controllers/index.ctrl.php or (b) controllers/settings.ctrl.php.    4.3  Medium  2017-01-18  2011-01-24  View
81122  CVE-2002-2171  Cross-site scripting (XSS) vulnerability in acWEB 1.8 and 1.14 allows remote attackers to insert arbitrary HTML and web script via a URL, possibly via a "%db" request in a URL.    4.3  Medium  2017-01-05  2008-09-10  View
15842  CVE-2010-4593  The Connection Manager in IBM Lotus Mobile Connect before 6.1.4 does not properly maintain a certain reference count, which allows remote authenticated users to cause a denial of service (IP address exhaustion) by making invalid attempts to establish sessions with the same VPN ID from multiple devices.    Medium  2017-01-18  2011-01-11  View

Page 16621 of 17672, showing 5 records out of 88360 total, starting on record 83101, ending on 83105

Actions