NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79581 | CVE-2002-0576 | ColdFusion 5.0 and earlier on Windows systems allows remote attackers to determine the absolute pathname of .cfm or .dbm files via an HTTP request that contains an MS-DOS device name such as NUL, which leaks the pathname in an error message. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80093 | CVE-2002-1098 | Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, adds an "HTTPS on Public Inbound (XML-Auto)(forward/in)" rule but sets the protocol to "ANY" when the XML filter configuration is enabled, which ultimately allows arbitrary traffic to pass through the concentrator. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80861 | CVE-2002-1910 | Click2Learn Ingenium Learning Management System 5.1 and 6.1 uses weak encryption for passwords (reversible algorithm), which allows attackers to obtain passwords. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
81117 | CVE-2002-2166 | Cross-site scripting (XSS) vulnerability in FuseTalk 2.0 and 3.0 allows remote attackers to insert arbitrary HTML and web script. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
81373 | CVE-2002-2422 | Cross-site scripting (XSS) vulnerability in Compaq Insight Management Agents 2.0, 2.1, 3.6.0, 4.2 and 4.3.7 allows remote attackers to inject arbitrary web script or HTML via a URL, which inserts the script into the resulting error message. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 17439 of 17672, showing 5 records out of 88360 total, starting on record 87191, ending on 87195