NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6641 | CVE-2008-6910 | Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not use timeouts for signed requests, which allows remote attackers to impersonate other users and gain privileges via a replay attack that sends the same request. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
72177 | CVE-2004-1798 | RealOne player 6.0.11.868 allows remote attackers to execute arbitrary script in the "My Computer" zone via a Synchronized Multimedia Integration Language (SMIL) presentation with a "file:javascript:" URL, which is executed in the security context of the previously loaded URL, a different vulnerability than CVE-2003-0726. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-11 | View | |
6897 | CVE-2008-7166 | Buffer overflow in the web interface in BitTorrent 6.0.1 (build 7859) and earlier, and uTorrent 1.7.6 (build 7859) and earlier, allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted Range header. NOTE: this is probably a different vulnerability than CVE-2008-0071 and CVE-2008-0364. | 2 | 5 | Medium | 2017-01-03 | 2009-09-09 | View | |
72433 | CVE-2004-2056 | SQL injection vulnerability in action.php in Nucleus CMS 3.01 allows remote attackers execute arbitrary SQL statements via the itemid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
7153 | CVE-2011-0014 | ssl/t1_lib.c in OpenSSL 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c allows remote attackers to cause a denial of service (crash), and possibly obtain sensitive information in applications that use OpenSSL, via a malformed ClientHello handshake message that triggers an out-of-bounds memory access, aka "OCSP stapling vulnerability." | 2 | 5 | Medium | 2017-01-07 | 2016-08-22 | View |
Page 16663 of 17672, showing 5 records out of 88360 total, starting on record 83311, ending on 83315