NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78963 | CVE-2001-1532 | WebX stores authentication information in the HTTP_REFERER variable, which is included in URL links within bulletin board messages posted by users, which could allow remote attackers to hijack user sessions. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
76253 | CVE-2000-0010 | WebWho+ whois.cgi program allows remote attackers to execute commands via shell metacharacters in the TLD parameter. | 2 | 10 | High | 2017-01-05 | 2008-09-10 | View | |
66079 | CVE-2005-0316 | WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
10582 | CVE-2011-4041 | webvrpcs.exe in Advantech/BroadWin WebAccess allows remote attackers to execute arbitrary code or obtain a security-code value via a long string in an RPC request to TCP port 4592. | 2 | 10 | High | 2017-01-07 | 2012-12-10 | View | |
48491 | CVE-2009-1203 | WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 does not properly distinguish its own login screen from the login screens it produces for third-party (1) FTP and (2) CIFS servers, which makes it easier for remote attackers to trick a user into sending WebVPN credentials to an arbitrary server via a URL associated with that server, aka Bug ID CSCsy80709. | 2 | 6 | Medium | 2017-01-07 | 2010-05-04 | View |
Page 261 of 17672, showing 5 records out of 88360 total, starting on record 1301, ending on 1305