NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6210  CVE-2008-6479  Cross-site request forgery (CSRF) vulnerability in the "change password" feature in the VZPP web interface for Parallels Virtuozzo 25.4.swsoft (build 3.0.0-25.4.swsoft) allows remote attackers to modify the password via a link or IMG tag to vz/cp/pwd.    6.8  Medium  2017-01-03  2009-03-17  View
71746  CVE-2004-1367  Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP or (2) SYSMAN user, generates an error that logs the password in the world-readable postDBCreation.log file, which could allow local users to obtain that password and use it against SYS or SYSTEM accounts, which may have been installed with the same password.    4.4  Medium  2016-12-20  2016-10-17  View
6466  CVE-2008-6735  Directory traversal vulnerability in qc/index.php in ThaiQuickCart 3 allows remote attackers to read arbitrary files via a .. (dot dot) in the sLanguage cookie.    5.8  Medium  2017-01-03  2009-04-22  View
72002  CVE-2004-1623  The WAV file property handler in Windows XP SP1 allows remote attackers to cause a denial of service (infinite loop in Explorer) via a WAV file with an invalid file header whose fmt chunk length is set to 0xFFFFFFFF.    Medium  2017-07-18  2017-07-10  View
72258  CVE-2004-1880  Memory leak in the back-bdb backend for OpenLDAP 2.1.12 and earlier allows remote attackers to cause a denial of service (memory consumption).    Medium  2016-12-20  2008-09-10  View

Page 2381 of 17672, showing 5 records out of 88360 total, starting on record 11901, ending on 11905

Actions