NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14839 | CVE-2010-3458 | SQL injection vulnerability in lib/toolkit/events/event.section.php in Symphony CMS 2.0.7 and 2.1.1 allows remote attackers to execute arbitrary SQL commands via the send-email[recipient] parameter to about/. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-18 | 2010-09-20 | View | |
80375 | CVE-2002-1422 | admbrowse.php in FUDforum before 2.2.0 allows remote attackers to create or delete files via URL-encoded pathnames in the cur and dest parameters. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
15095 | CVE-2010-3750 | rjrmrpln.dll in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 does not properly validate file contents that are used during interaction with a heap buffer, which allows remote attackers to execute arbitrary code via crafted Name Value Property (NVP) elements in logical streams in a media file. | 2 | 9.3 | High | 2017-01-18 | 2010-10-19 | View | |
15351 | CVE-2010-4033 | Google Chrome before 7.0.517.41 does not properly implement the autofill and autocomplete functionality, which allows remote attackers to conduct "profile spamming" attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-18 | 2011-07-18 | View | |
80887 | CVE-2002-1936 | UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to gain access via (1) field account with a password of "*field", (2) guru account with a password of "*3noguru", (3) snmp account with a password of "snmp", or (4) dbase account with a password of "dbase". | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View |
Page 17150 of 17672, showing 5 records out of 88360 total, starting on record 85746, ending on 85750