NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6944 | CVE-2008-7213 | Cross-site scripting (XSS) vulnerability in mambots/editors/mostlyce/jscripts/tiny_mce/filemanager/connectors/php/connector.php in MOStlyCE before 2.4, as used in Mambo 4.6.3 and earlier, allows remote attackers to inject arbitrary web script or HTML via the Command parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-16 | View | |
7200 | CVE-2011-0065 | Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors related to OBJECT"s mChannel. | 2 | 10 | High | 2017-01-07 | 2017-01-06 | View | |
7456 | CVE-2011-0382 | The CGI subsystem on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 allows remote attackers to execute arbitrary commands via a request to TCP port 443, related to a "command injection vulnerability," aka Bug ID CSCtf97221. | 2 | 10 | High | 2017-01-07 | 2011-04-08 | View | |
72992 | CVE-2004-2615 | The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manually given world-writable permissions, which allows local users to insert false news, delete news, and possibly gain privileges or have other unknown impact. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
7712 | CVE-2011-0663 | Multiple integer overflows in the Microsoft (1) JScript 5.6 through 5.8 and (2) VBScript 5.6 through 5.8 scripting engines allow remote attackers to execute arbitrary code via a crafted web page, aka "Scripting Memory Reallocation Vulnerability." | 2 | 9.3 | High | 2017-01-07 | 2011-10-04 | View |
Page 1933 of 17672, showing 5 records out of 88360 total, starting on record 9661, ending on 9665