NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66569 | CVE-2005-0819 | The xvesa code in Novell Netware 6.5 SP2 and SP3 allows remote attackers to redirect the xsession without authentication via a direct request to GUIMirror/Start. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 59036 | CVE-2006-0296 | The XULDocument.persist function in Mozilla, Firefox before 1.5.0.1, and SeaMonkey before 1.0 does not validate the attribute name, which allows remote attackers to execute arbitrary Javascript by injecting RDF data into the user"s localstore.rdf file. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 27862 | CVE-2015-7175 | The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow." | 2 | 7.5 | High | 2017-01-19 | 2016-12-21 | View | |
| 73210 | CVE-2003-0063 | The xterm terminal emulator in XFree86 4.2.0 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user"s terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 34725 | CVE-2014-7330 | The XtendCU Mobile (aka com.metova.cuae.xtend) application 1.0.28 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View |
Page 2573 of 17672, showing 5 records out of 88360 total, starting on record 12861, ending on 12865