NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14339 | CVE-2010-2908 | SQL injection vulnerability in the Joomdle (com_joomdle) component 0.24 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the course_id parameter in a detail action to index.php. | 2 | 7.5 | High | 2017-01-18 | 2010-07-29 | View | |
79875 | CVE-2002-0877 | Directory traversal vulnerability in the FTP server for Shambala 4.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the (1) LIST (ls) or (2) GET commands. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
14595 | CVE-2010-3177 | Multiple cross-site scripting (XSS) vulnerabilities in the Gopher parser in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, and SeaMonkey before 2.0.9, allow remote attackers to inject arbitrary web script or HTML via a crafted name of a (1) file or (2) directory on a Gopher server. | 2 | 4.3 | Medium | 2017-01-18 | 2013-07-23 | View | |
80131 | CVE-2002-1138 | Microsoft SQL Server 7.0 and 2000, including Microsoft Data Engine (MSDE) 1.0 and Microsoft Desktop Engine (MSDE) 2000, writes output files for scheduled jobs under its own privileges instead of the entity that launched it, which allows attackers to overwrite system files, aka "Flaw in Output File Handling for Scheduled Jobs." | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
14851 | CVE-2010-3471 | Session fixation vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.7-P8AE-FP007 allows remote attackers to hijack web sessions via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-21 | View |
Page 200 of 17672, showing 5 records out of 88360 total, starting on record 996, ending on 1000