NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
79296  CVE-2002-0286  The GetPassword function in function.php of SiteNews 0.10 and 0.11 allows remote attackers to gain privileges and add users by providing a non-existent user name and the MD5 checksum for an empty password to add_user.php, which causes GetPassword to produce and compare a blank password for the non-existent user.    7.5  High  2017-07-18  2017-07-10  View
80576  CVE-2002-1623  The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, does not encrypt initiator or responder identities during negotiation, which may allow remote attackers to determine valid usernames by (1) monitoring responses before the password is supplied or (2) sniffing, as originally reported for FireWall-1 SecuRemote.    Medium  2017-07-18  2017-07-10  View
84416  CVE-2017-3048  Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable heap overflow vulnerability in the image conversion engine, related to internal scan line representation in TIFF files. Successful exploitation could lead to arbitrary code execution.    9.3  High  2017-07-18  2017-07-10  View
86464  CVE-2017-3127  A Cross-Site Scripting vulnerability in Fortinet FortiGate 5.2.0 through 5.2.10 allows attacker to execute unauthorized code or commands via the srcintf parameter during Firewall Policy Creation.    4.3  Medium  2017-07-18  2017-07-10  View
88256  CVE-2017-9894  XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a User Mode Write AV starting at Xfpx!gffGetFormatInfo+0x0000000000029272.    4.6  Medium  2017-07-18  2017-07-10  View

Page 17185 of 17672, showing 5 records out of 88360 total, starting on record 85921, ending on 85925

Actions