NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
77332  CVE-2000-1100  The default configuration for PostACI webmail system installs the /includes/global.inc configuration file within the web root, which allows remote attackers to read sensitive information such as database usernames and passwords via a direct HTTP GET request.    7.5  High  2017-01-05  2008-09-05  View
79124  CVE-2002-0108  Allaire Forums 2.0.4 and 2.0.5 and Forums! 3.0 and 3.1 allows remote authenticated users to spoof messages as other users by modifying the hidden form fields for the name and e-mail address.    7.5  High  2017-01-05  2008-11-04  View
79380  CVE-2002-0372  Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer"s (IE) security mechanisms and run code via an executable .wma media file with a license installation requirement stored in the IE cache, aka the "Cache Path Disclosure via Windows Media Player".    7.5  High  2017-01-05  2008-09-10  View
14356  CVE-2010-2925  SQL injection vulnerability in index.php in Freeway CMS 1.4.3.210 allows remote attackers to execute arbitrary SQL commands via the ecPath parameter.    7.5  High  2017-01-18  2010-08-02  View
79892  CVE-2002-0895  Buffer overflow in MatuFtpServer 1.1.3.0 (1.1.3) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long PASS (password) command.    7.5  High  2017-01-05  2008-09-05  View

Page 2168 of 17672, showing 5 records out of 88360 total, starting on record 10836, ending on 10840

Actions