NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2854  CVE-2008-2960  Cross-site scripting (XSS) vulnerability in phpMyAdmin before 2.11.7, when register_globals is enabled and .htaccess support is disabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving scripts in libraries/.    2.6  Low  2017-01-03  2011-03-07  View
18726  CVE-2016-2513  The password hasher in contrib/auth/hashers.py in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to enumerate users via a timing attack involving login requests.    2.6  Low  2017-01-19  2016-12-02  View
30246  CVE-2014-1646  Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3.2 MP1 do not properly perform memory copies, which allows remote attackers to cause a denial of service (read access violation and application crash) via a malformed certificate.    2.6  Low  2017-01-19  2014-04-24  View
61734  CVE-2006-3050  Directory traversal vulnerability in detail.php in SixCMS 6.0, and other versions before 6.0.6patch2, allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the template parameter.    2.6  Low  2016-12-20  2008-09-05  View
66343  CVE-2005-0591  Firefox before 1.0.1 allows remote attackers to spoof the (1) security and (2) download modal dialog boxes, which could be used to trick users into executing script or downloading and executing a file, aka "Firespoofing."    2.6  Low  2017-07-18  2017-07-10  View

Page 2285 of 17672, showing 5 records out of 88360 total, starting on record 11421, ending on 11425

Actions