NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
77386  CVE-2000-1154  RHConsole in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via long HTTP request.    Medium  2017-01-05  2008-09-10  View
12106  CVE-2010-0556  browser/login/login_prompt.cc in Google Chrome before 4.0.249.89 populates an authentication dialog with credentials that were stored by Password Manager for a different web site, which allows user-assisted remote HTTP servers to obtain sensitive information via a URL that requires authentication, as demonstrated by a URL in the SRC attribute of an IMG element.    4.3  Medium  2017-01-18  2012-01-26  View
12874  CVE-2010-1342  Multiple PHP remote file inclusion vulnerabilities in Direct News 4.10.2, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the rootpath parameter to (1) admin/menu.php and (2) library/lib.menu.php; and the adminroot parameter to (3) admin/media/update_content.php and (4) library/class.backup.php. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-18  2010-04-12  View
13130  CVE-2010-1610  Cross-site request forgery (CSRF) vulnerability in index.php in OpenCart 1.4 allows remote attackers to hijack the authentication of an application administrator for requests that create an administrative account via a POST request with the route parameter set to "user/user/insert." NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-18  2010-04-30  View
78666  CVE-2001-1231  GroupWise 5.5 and 6 running in live remote or smart caching mode allows remote attackers to read arbitrary users" mailboxes by extracting usernames and passwords from sniffed network traffic, as addressed by the "Padlock" fix.    Medium  2017-01-05  2008-09-05  View

Page 2667 of 17672, showing 5 records out of 88360 total, starting on record 13331, ending on 13335

Actions