NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 65954 | CVE-2005-0190 | Directory traversal vulnerability in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to delete arbitrary files via a Real Metadata Packages (RMP) file with a FILENAME tag containing .. (dot dot) sequences in a filename that ends with a ? (question mark) and an allowed file extension (e.g. .mp3), which bypasses the check for the file extension. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 65956 | CVE-2005-0192 | Directory traversal vulnerability in the parsing of Skin file names in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in an RJS filename. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 72868 | CVE-2004-2491 | A race condition in Opera web browser 7.53 Build 3850 causes Opera to fill in the address bar before the page has been loaded, which allows remote attackers to spoof the URL in the address bar via the window.open and location.replace HTML parameters, which facilitates phishing attacks. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 61604 | CVE-2006-2920 | Sylpheed-Claws before 2.2.2 and Sylpheed before 2.2.6 allow remote attackers to bypass the URI check functionality and makes it easier to conduct phishing attacks via a URI that begins with a space character. | 2 | 2.6 | Low | 2016-12-20 | 2011-07-25 | View | |
| 165 | CVE-2008-0179 | Cross-site scripting (XSS) vulnerability in service/impl/UserLocalServiceImpl.java in Liferay Portal 4.3.6 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header, which is used when composing Forgot Password e-mail messages in HTML format. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View |
Page 2371 of 17672, showing 5 records out of 88360 total, starting on record 11851, ending on 11855