NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72780 | CVE-2004-2403 | Cross-site request forgery (CSRF) vulnerability in YaBB 1 GOLD SP 1.3.2 allows remote attackers to perform unauthorized actions as the administrative user via a link or IMG tag to YaBB.pl that specifies the desired action, id, and moda parameters. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
74060 | CVE-2003-0987 | mod_digest for Apache before 1.3.31 does not properly verify the nonce of a client response by using a AuthNonce secret. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
80716 | CVE-2002-1765 | Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (memory consumption and crash) via an email with a malformed MIME header. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
82252 | CVE-2017-5847 | The gst_asf_demux_process_ext_content_desc function in gst/asfdemux/gstasfdemux.c in gst-plugins-ugly in GStreamer allows remote attackers to cause a denial of service (out-of-bounds heap read) via vectors involving extended content descriptors. | 2 | 5 | Medium | 2017-07-18 | 2017-06-30 | View | |
82508 | CVE-2017-0037 | Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreakOnColumnSpanningElement function in mshtml.dll, which allows remote attackers to execute arbitrary code via vectors involving a crafted Cascading Style Sheets (CSS) token sequence and crafted JavaScript code that operates on a TH element. | 2 | 7.6 | High | 2017-07-18 | 2017-07-17 | View |
Page 16715 of 17672, showing 5 records out of 88360 total, starting on record 83571, ending on 83575