NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5268 | CVE-2008-5519 | The JK Connector (aka mod_jk) 1.2.0 through 1.2.26 in Apache Tomcat allows remote attackers to obtain sensitive information via an arbitrary request from an HTTP client, in opportunistic circumstances involving (1) a request from a different client that included a Content-Length header but no POST data or (2) a rapid series of requests, related to noncompliance with the AJP protocol"s requirements for requests containing Content-Length headers. | 2 | 2.6 | Low | 2017-01-03 | 2010-05-04 | View | |
| 71828 | CVE-2004-1449 | Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user"s hard drive by obscuring a file upload control and tricking the user into dragging text into that control. | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
| 72596 | CVE-2004-2219 | Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar to facilitate phishing attacks via Javascript that uses an invalid URI, modifies the Location field, then uses history.back to navigate to the previous domain, aka NullyFake. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 75412 | CVE-1999-0762 | When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information. | 2 | 2.6 | Low | 2017-01-05 | 2008-09-09 | View | |
| 11924 | CVE-2010-0363 | Cross-site scripting (XSS) vulnerability in Zeus Web Server before 4.3r5, when SSL is enabled for the admin server, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2002-1785. | 2 | 2.6 | Low | 2017-01-18 | 2010-02-02 | View |
Page 2362 of 17672, showing 5 records out of 88360 total, starting on record 11806, ending on 11810