NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3824 | CVE-2008-3962 | The from_format function in ssmtp.c in ssmtp 2.61 and 2.62, in certain configurations, uses uninitialized memory for the From: field of an e-mail message, which might allow remote attackers to obtain sensitive information (memory contents) in opportunistic circumstances by reading a message. | 2 | 2.6 | Low | 2017-01-03 | 2011-07-11 | View | |
| 10224 | CVE-2011-3634 | methods/https.cc in apt before 0.8.11 accepts connections when the certificate host name fails validation and Verify-Host is enabled, which allows man-in-the-middle attackers to obtain repository credentials via unspecified vectors. | 2 | 2.6 | Low | 2017-01-07 | 2014-03-03 | View | |
| 13296 | CVE-2010-1796 | The AutoFill feature in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote attackers to obtain sensitive Address Book Card information via JavaScript code that forces keystroke events for input fields. | 2 | 2.6 | Low | 2017-01-18 | 2010-08-21 | View | |
| 15856 | CVE-2010-4607 | Multiple cross-site scripting (XSS) vulnerabilities in Habari 0.6.5, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) additem_form parameter to system/admin/dash_additem.php and the (2) status_data[] parameter to system/admin/dash_status.php. NOTE: some of these details are obtained from third party information. | 2 | 2.6 | Low | 2017-01-18 | 2011-01-04 | View | |
| 61681 | CVE-2006-2997 | Cross-site scripting (XSS) vulnerability in ZMS 2.9 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the raw parameter in the search field. | 2 | 2.6 | Low | 2016-12-20 | 2016-08-23 | View |
Page 2432 of 17672, showing 5 records out of 88360 total, starting on record 12156, ending on 12160