NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
73185 | CVE-2003-0038 | Cross-site scripting (XSS) vulnerability in options.py for Mailman 2.1 allows remote attackers to inject script or HTML into web pages via the (1) email or (2) language parameters. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
74209 | CVE-2003-1137 | Charles Steinkuehler sh-httpd 0.3 and 0.4 allows remote attackers to read files or execute arbitrary CGI scripts via a GET request that contains an asterisk (*) wildcard character. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
80609 | CVE-2002-1656 | X-News (x_news) 1.1 and earlier allows attackers to authenticate as other users by obtaining the MD5 checksum of the password, e.g. via sniffing or the users.txt data file, and providing it in a cookie. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
81633 | CVE-2017-5372 | The function msp (aka MSPRuntimeInterface) in the P4 SERVERCORE component in SAP AS JAVA allows remote attackers to obtain sensitive system information by leveraging a missing authorization check for the (1) getInformation, (2) getParameters, (3) getServiceInfo, (4) getStatistic, or (5) getClientStatistic function, aka SAP Security Note 2331908. | 2 | 5 | Medium | 2017-02-07 | 2017-01-25 | View | |
82145 | CVE-2017-0424 | An information disclosure vulnerability in AOSP Messaging could enable a remote attacker using a special crafted file to access data outside of its permission levels. This issue is rated as Moderate because it is a general bypass for a user level defense in depth or exploit mitigation technology in a privileged process. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32322450. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-10 | View |
Page 17213 of 17672, showing 5 records out of 88360 total, starting on record 86061, ending on 86065