NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
7128 | CVE-2017-5490 | Cross-site scripting (XSS) vulnerability in the theme-name fallback functionality in wp-includes/class-wp-theme.php in WordPress before 4.7.1 allows remote attackers to inject arbitrary web script or HTML via a crafted directory name of a theme, related to wp-admin/includes/class-theme-installer-skin.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View | |
72920 | CVE-2004-2543 | Secure Computing Corporation Sidewinder G2 6.1.0.01 might allow remote attackers to cause a denial of service (proxy failure) via invalid traffic to the (1) T.120 or (2) RTSP proxy, or (3) invalid MIME messages to the mail filter. NOTE: this might not be a vulnerability because the embedded monitoring sub-system automatically restarts after the failure. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74200 | CVE-2003-1128 | XMMS.pm in X2 XMMS Remote, as obtained from the vendor server between 4 AM 11 AM PST on May 7, 2003, allows remote attackers to execute arbitrary commands via shell metacharacters in a request to TCP port 8086. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
78296 | CVE-2001-0853 | Directory traversal vulnerability in Entrust GetAccess allows remote attackers to read arbitrary files via a .. (dot dot) in the locale parameter to (1) helpwin.gas.bat or (2) AboutBox.gas.bat. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
79320 | CVE-2002-0310 | Netwin WebNews 1.1k CGI program includes several default usernames and cleartext passwords that cannot be deleted by the administrator, which allows remote attackers to gain privileges via the username/password combinations (1) testweb/newstest, (2) alwn3845/imaptest, (3) alwi3845/wtest3452, or (4) testweb2/wtest4879. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 17460 of 17672, showing 5 records out of 88360 total, starting on record 87296, ending on 87300