NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11299  CVE-2011-5039  Multiple SQL injection vulnerabilities in Infoproject Biznis Heroj allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters to login.php, (3) the filter parameter to widget.dokumenti_lista.php, and (4) the fin_nalog_id parameter to nalozi_naslov.php.    7.5  High  2017-01-07  2012-01-02  View
76835  CVE-2000-0594  BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.    Medium  2017-01-05  2008-09-10  View
11555  CVE-2011-5303  Cross-site scripting (XSS) vulnerability in Spitfire CMS 1.0.436 allows remote attackers to inject arbitrary web script or HTML via a cms_username cookie.    4.3  Medium  2017-01-07  2015-01-02  View
77091  CVE-2000-0857  The logging capability in muh 2.05d IRC server does not properly cleanse user-injected format strings, which allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed nickname.    7.5  High  2017-01-05  2008-09-05  View
11811  CVE-2010-0240  The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when a custom network driver is used, does not properly handle local fragmentation of Encapsulating Security Payload (ESP) over UDP packets, which allows remote attackers to execute arbitrary code via crafted packets, aka "Header MDL Fragmentation Vulnerability."    10  High  2017-01-18  2010-08-21  View

Page 2120 of 17672, showing 5 records out of 88360 total, starting on record 10596, ending on 10600

Actions