NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17419 | CVE-2016-10027 | Race condition in the XMPP library in Smack before 4.1.9, when the SecurityMode.required TLS setting has been set, allows man-in-the-middle attackers to bypass TLS protections and trigger use of cleartext for client authentication by stripping the "starttls" feature from a server response. | 2 | 2.6 | Low | 2017-01-19 | 2017-01-18 | View | |
| 27915 | CVE-2015-7232 | Cross-site scripting (XSS) vulnerability in unspecified administration pages in the OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Ontology module is enabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 2.6 | Low | 2017-01-19 | 2015-09-18 | View | |
| 61451 | CVE-2006-2766 | Buffer overflow in INETCOMM.DLL, as used in Microsoft Internet Explorer 6.0 through 6.0 SP2, Windows Explorer, Outlook Express 6, and possibly other programs, allows remote user-assisted attackers to cause a denial of service (application crash) via a long mhtml URI in the URL value in a URL file. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 61963 | CVE-2006-3284 | Cross-site scripting (XSS) vulnerability in Dating Agent PRO 4.7.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter in (1) webmaster/index.php and (2) search.php. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 72460 | CVE-2004-2083 | Opera Web Browser 7.0 through 7.23 allows remote attackers to trick users into executing a malicious file by embedding a CLSID in the file name, which causes the malicious file to appear as a trusted file type, aka "File Download Extension Spoofing." | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View |
Page 2265 of 17672, showing 5 records out of 88360 total, starting on record 11321, ending on 11325