NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11568  CVE-2011-5316  Cross-site request forgery (CSRF) vulnerability in admin/index.php in Cambio 0.5a nightly r37 allows remote attackers to hijack the authentication of administrators for requests that modify credentials via a user save action.    6.8  Medium  2017-01-07  2015-01-02  View
11824  CVE-2010-0255  Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving JavaScript exploit code that constructs a reference to a file://127.0.0.1 URL, aka the dynamic OBJECT tag vulnerability, as demonstrated by obtaining the data from an index.dat file, a variant of CVE-2009-1140 and related to CVE-2008-1448.    4.3  Medium  2017-01-18  2010-08-21  View
77360  CVE-2000-1128  The default configuration of McAfee VirusScan 4.5 does not quote the ImagePath variable, which improperly sets the search path and allows local users to place a Trojan horse "common.exe" program in the C:Program Files directory.    4.6  Medium  2017-01-05  2008-09-05  View
77616  CVE-2001-0136  Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed.    Medium  2017-01-05  2008-09-05  View
77872  CVE-2001-0399  Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before the WEB-INF specifier in an HTTP request.    Medium  2017-01-05  2016-10-17  View

Page 1738 of 17672, showing 5 records out of 88360 total, starting on record 8686, ending on 8690

Actions