NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11568 | CVE-2011-5316 | Cross-site request forgery (CSRF) vulnerability in admin/index.php in Cambio 0.5a nightly r37 allows remote attackers to hijack the authentication of administrators for requests that modify credentials via a user save action. | 2 | 6.8 | Medium | 2017-01-07 | 2015-01-02 | View | |
11824 | CVE-2010-0255 | Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving JavaScript exploit code that constructs a reference to a file://127.0.0.1 URL, aka the dynamic OBJECT tag vulnerability, as demonstrated by obtaining the data from an index.dat file, a variant of CVE-2009-1140 and related to CVE-2008-1448. | 2 | 4.3 | Medium | 2017-01-18 | 2010-08-21 | View | |
77360 | CVE-2000-1128 | The default configuration of McAfee VirusScan 4.5 does not quote the ImagePath variable, which improperly sets the search path and allows local users to place a Trojan horse "common.exe" program in the C:Program Files directory. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
77616 | CVE-2001-0136 | Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
77872 | CVE-2001-0399 | Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before the WEB-INF specifier in an HTTP request. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View |
Page 1738 of 17672, showing 5 records out of 88360 total, starting on record 8686, ending on 8690