NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14590 | CVE-2010-3172 | CRLF injection vulnerability in Bugzilla before 3.2.9, 3.4.x before 3.4.9, 3.6.x before 3.6.3, and 4.0.x before 4.0rc1, when Server Push is enabled in a web browser, allows remote attackers to inject arbitrary HTTP headers and content, and conduct HTTP response splitting attacks, via a crafted URL. | 2 | 2.6 | Low | 2017-01-18 | 2010-12-16 | View | |
80126 | CVE-2002-1132 | SquirrelMail 1.2.7 and earlier allows remote attackers to determine the absolute pathname of the options.php script via a malformed optpage file argument, which generates an error message when the file cannot be included in the script. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
14846 | CVE-2010-3465 | Multiple cross-site scripting (XSS) vulnerabilities in XSE Shopping Cart 1.5.2.1 and 1.5.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to Default.aspx and the (2) type parameter to SearchResults.aspx. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-20 | View | |
80382 | CVE-2002-1429 | Cross-site scripting vulnerability in board.php of endity.com ShoutBOX allows remote attackers to inject arbitrary HTML into the shoutbox page via the site parameter. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
15102 | CVE-2010-3757 | Format string vulnerability in the _Eventlog function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to execute arbitrary code via format string specifiers located after a | (pipe) character in a string. NOTE: this might overlap CVE-2010-3059. | 2 | 10 | High | 2017-01-18 | 2010-10-06 | View |
Page 17209 of 17672, showing 5 records out of 88360 total, starting on record 86041, ending on 86045