NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
12021 | CVE-2010-0465 | Cross-site scripting (XSS) vulnerability in the online Documents functionality in SugarCRM 5.2.x before 5.2.0l and 5.5.x before 5.5.0a allows remote authenticated users to inject arbitrary web script or HTML via the Document Name field. | 2 | 4.3 | Medium | 2017-01-18 | 2010-03-31 | View | |
77557 | CVE-2001-0077 | The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensitive information such as system logs and cluster configurations. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
12277 | CVE-2010-0731 | The gnutls_x509_crt_get_serial function in the GnuTLS library before 1.2.1, when running on big-endian, 64-bit platforms, calls the asn1_read_value with a pointer to the wrong data type and the wrong length value, which allows remote attackers to bypass the certificate revocation list (CRL) check and cause a stack-based buffer overflow via a crafted X.509 certificate, related to extraction of a serial number. | 2 | 7.5 | High | 2017-01-18 | 2010-09-09 | View | |
77813 | CVE-2001-0335 | FTP service in IIS 5.0 and earlier allows remote attackers to enumerate Guest accounts in trusted domains by preceding the username with a special sequence of characters. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
12533 | CVE-2010-0997 | Cross-site scripting (XSS) vulnerability in 107_plugins/content/content_manager.php in the Content Management plugin in e107 before 0.7.20, when the personal content manager is enabled, allows user-assisted remote authenticated users to inject arbitrary web script or HTML via the content_heading parameter. | 2 | 3.5 | Low | 2017-01-18 | 2010-04-21 | View |
Page 17025 of 17672, showing 5 records out of 88360 total, starting on record 85121, ending on 85125