NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12986  CVE-2010-1459  The default configuration of ASP.NET in Mono before 2.6.4 has a value of FALSE for the EnableViewStateMac property, which allows remote attackers to conduct cross-site scripting (XSS) attacks, as demonstrated by the __VIEWSTATE parameter to 2.0/menu/menu1.aspx in the XSP sample project.    4.3  Medium  2017-01-18  2010-09-09  View
12987  CVE-2010-1460  The IBM BladeCenter with Advanced Management Module (AMM) firmware before bpet50g does not properly perform interrupt sharing for USB and iSCSI, which allows remote attackers to cause a denial of service (management module reboot) via TCP packets with malformed application data.    Medium  2017-01-18  2010-06-07  View
12988  CVE-2010-1461  Directory traversal vulnerability in the Photo Battle (com_photobattle) component 1.0.1 for Joomla! allows remote attackers to read arbitrary files via the view parameter to index.php.    Medium  2017-01-18  2010-04-19  View
12989  CVE-2010-1462  Directory traversal vulnerability in WebAsyst Shop-Script FREE has unknown impact and attack vectors via the sub parameter.    10  High  2017-01-18  2010-04-19  View
12990  CVE-2010-1463  Multiple SQL injection vulnerabilities in WebAsyst Shop-Script FREE allow attackers to execute arbitrary SQL commands via the (1) add2cart, (2) c_id, (3) categoryID, (4) list_price, (5) name, (6) new_offer, (7) price, (8) product_code, (9) productID, (10) rating, and (11) save_product parameters.    7.5  High  2017-01-18  2010-06-11  View

Page 2598 of 17672, showing 5 records out of 88360 total, starting on record 12986, ending on 12990

Actions