NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48121 | CVE-2009-0804 | Ziproxy 2.6.0, when transparent interception mode is enabled, uses the HTTP Host header to determine the remote endpoint, which allows remote attackers to bypass access controls for Flash, Java, Silverlight, and probably other technologies, and possibly communicate with restricted intranet sites, via a crafted web page that causes a client to send HTTP requests with a modified Host header. | 2 | 5.4 | Medium | 2017-01-07 | 2009-06-18 | View | |
39839 | CVE-2013-4191 | zip.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 does not properly enforce access restrictions when including content in a zip archive, which allows remote attackers to obtain sensitive information by reading a generated archive. | 2 | 5.8 | Medium | 2017-01-18 | 2014-03-11 | View | |
75824 | CVE-1999-1174 | ZIP drive for Iomega ZIP-100 disks allows attackers with physical access to the drive to bypass password protection by inserting a known disk with a known password, waiting for the ZIP drive to power down, manually replacing the known disk with the target disk, and using the known password to access the target disk. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-10 | View | |
84046 | CVE-2016-9924 | Zimbra Collaboration Suite (ZCS) before 8.7.4 allows remote attackers to conduct XML External Entity (XXE) attacks. | 2017-03-29 | 2017-03-29 | View | ||||
40536 | CVE-2013-5119 | Zimbra Collaboration Suite (ZCS) 6.0.16 and earlier allows man-in-the-middle attackers to obtain access by sniffing the network and replaying the ZM_AUTH_TOKEN token. | 2 | 6.8 | Medium | 2017-01-18 | 2013-10-16 | View |
Page 23 of 17672, showing 5 records out of 88360 total, starting on record 111, ending on 115