NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78950 | CVE-2001-1519 | ** DISPUTED ** RunAs (runas.exe) in Windows 2000 allows local users to create a spoofed named pipe when the service is stopped, then capture cleartext usernames and passwords when clients connect to the service. NOTE: the vendor disputes this issue, saying that administrative privileges are already required to exploit it. | 2 | 3.6 | Low | 2017-01-05 | 2008-09-05 | View | |
80486 | CVE-2002-1533 | Cross-site scripting (XSS) vulnerability in Jetty JSP servlet engine allows remote attackers to insert arbitrary HTML or script via an HTTP request to a .jsp file whose name contains the malicious script and some encoded linefeed characters (%0a). | 2 | 5.8 | Medium | 2017-01-05 | 2008-09-05 | View | |
80742 | CVE-2002-1791 | SGI IRIX 6.5 through 6.5.17 creates temporary desktop files with world-writable permissions, which allows local users to overwrite or corrupt those files. | 2 | 2.1 | Low | 2017-01-05 | 2008-09-05 | View | |
80998 | CVE-2002-2047 | The file preview functionality in Sketch 0.6.12 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of an encapsulated Postscript (EPS) file. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
81254 | CVE-2002-2303 | 3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie that contains the data. | 2 | 7.8 | High | 2017-01-05 | 2008-09-05 | View |
Page 16633 of 17672, showing 5 records out of 88360 total, starting on record 83161, ending on 83165