NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79490 | CVE-2002-0484 | move_uploaded_file in PHP does not does not check for the base directory (open_basedir), which could allow remote attackers to upload files to unintended locations on the system. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
79489 | CVE-2002-0483 | index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
79488 | CVE-2002-0482 | Directory traversal vulnerability in PCI Netsupport Manager before version 7, when running web extensions, allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP GET request. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
79487 | CVE-2002-0481 | An interaction between Windows Media Player (WMP) and Outlook 2002 allows remote attackers to bypass Outlook security settings and execute Javascript via an IFRAME in an HTML email message that references .WMS (Windows Media Skin) or other WMP media files, whose onload handlers execute the player.LaunchURL() Javascript function. | 2 | 5.1 | Medium | 2017-01-05 | 2008-09-05 | View | |
79486 | CVE-2002-0480 | ISS RealSecure for Nokia devices before IPSO build 6.0.2001.141d is configured to allow a user "skank" on a machine "starscream" to become a key manager when the "first time connection" feature is enabled and before any legitimate administrators have connected, which could allow remote attackers to gain access to the device during installation. | 2 | 10 | High | 2017-01-05 | 2016-10-17 | View |
Page 16709 of 17672, showing 5 records out of 88360 total, starting on record 83541, ending on 83545