NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80610 | CVE-2002-1657 | PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
15330 | CVE-2010-4007 | Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding oracle attack, a related issue to CVE-2010-2057. | 2 | 5 | Medium | 2017-01-18 | 2010-10-21 | View | |
15586 | CVE-2010-4331 | Multiple cross-site scripting (XSS) vulnerabilities in Seo Panel 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) default_news or (2) sponsors cookies, which are not properly handled by (a) controllers/index.ctrl.php or (b) controllers/settings.ctrl.php. | 2 | 4.3 | Medium | 2017-01-18 | 2011-01-24 | View | |
81122 | CVE-2002-2171 | Cross-site scripting (XSS) vulnerability in acWEB 1.8 and 1.14 allows remote attackers to insert arbitrary HTML and web script via a URL, possibly via a "%db" request in a URL. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-10 | View | |
15842 | CVE-2010-4593 | The Connection Manager in IBM Lotus Mobile Connect before 6.1.4 does not properly maintain a certain reference count, which allows remote authenticated users to cause a denial of service (IP address exhaustion) by making invalid attempts to establish sessions with the same VPN ID from multiple devices. | 2 | 4 | Medium | 2017-01-18 | 2011-01-11 | View |
Page 16621 of 17672, showing 5 records out of 88360 total, starting on record 83101, ending on 83105