NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9453 | CVE-2011-2720 | The autocompletion functionality in GLPI before 0.80.2 does not blacklist certain username and password fields, which allows remote attackers to obtain sensitive information via a crafted POST request. | 2 | 5 | Medium | 2017-01-07 | 2012-02-15 | View | |
75245 | CVE-1999-0593 | The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in. | 2 | 4.9 | Medium | 2017-07-18 | 2017-07-10 | View | |
10221 | CVE-2011-3627 | The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a denial of service (crash) via vectors related to "recursion level" and (1) libclamav/bytecode.c and (2) libclamav/bytecode_api.c. | 2 | 4.3 | Medium | 2017-01-07 | 2012-03-12 | View | |
10989 | CVE-2011-4602 | The XMPP protocol plugin in libpurple in Pidgin before 2.10.1 does not properly handle missing fields in (1) voice-chat and (2) video-chat stanzas, which allows remote attackers to cause a denial of service (application crash) via a crafted message. | 2 | 5 | Medium | 2017-01-07 | 2013-11-02 | View | |
76525 | CVE-2000-0282 | TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View |
Page 16991 of 17672, showing 5 records out of 88360 total, starting on record 84951, ending on 84955