NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12272  CVE-2010-0726  Cross-site scripting (XSS) vulnerability in the tb-send.rb (TrackBack transmission) plugin in tDiary 2.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly related to the (1) plugin_tb_url and (2) plugin_tb_excerpt parameters.    4.3  Medium  2017-01-18  2010-03-03  View
77808  CVE-2001-0330  Bugzilla 2.10 allows remote attackers to access sensitive information, including the database username and password, via an HTTP request for the globals.pl file, which is normally returned by the web server without being executed.    7.5  High  2017-01-05  2008-09-05  View
12528  CVE-2010-0992  Multiple cross-site request forgery (CSRF) vulnerabilities in Pulse CMS Basic 1.2.2 and 1.2.3, and possibly Pulse Pro before 1.3.2, allow remote attackers to hijack the authentication of users for requests that (1) upload image files, (2) delete image files, or (3) create blocks.    6.8  Medium  2017-01-18  2010-04-17  View
78064  CVE-2001-0599  Sybase Adaptive Server Anywhere Database Engine 6.0.3.2747 and earlier as included with Symantec Ghost 6.5 allows a remote attacker to create a denial of service by sending large (> 45Kb) amounts of data to port 2638.    Medium  2017-01-05  2008-09-05  View
12784  CVE-2010-1252  Unspecified vulnerability in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via a crafted Excel file, aka "Excel String Variable Vulnerability."    9.3  High  2017-01-18  2010-08-21  View

Page 16723 of 17672, showing 5 records out of 88360 total, starting on record 83611, ending on 83615

Actions