NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79280 | CVE-2002-0270 | Opera, when configured with the "Determine action by MIME type" option disabled, interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks. | 2 | 4.3 | Medium | 2017-01-05 | 2016-10-17 | View | |
79279 | CVE-2002-0269 | Internet Explorer 5.x and 6 interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
79278 | CVE-2002-0268 | Identix BioLogon 3 allows users with physical access to the system to gain administrative privileges by using CTRL-ALT-DEL and running a "Browse" function, which runs Explorer with SYSTEM privileges. | 2 | 7.2 | High | 2017-01-05 | 2016-10-17 | View | |
79277 | CVE-2002-0267 | preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the "theme" field followed by the Status::admin command, which causes the Status line to be entered into the password file. | 2 | 10 | High | 2017-01-05 | 2016-10-17 | View | |
79276 | CVE-2002-0266 | Thunderstone Texis CGI script allows remote attackers to obtain the full path of the web root via a request for a nonexistent file, which generates an error message that includes the full pathname. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View |
Page 16751 of 17672, showing 5 records out of 88360 total, starting on record 83751, ending on 83755