NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 20886 | CVE-2016-5670 | Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 have a hardcoded password of admin for the admin account, which makes it easier for remote attackers to obtain access via the web management interface. | 2 | 10 | High | 2017-01-19 | 2016-08-15 | View | |
| 20882 | CVE-2016-5666 | Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 rely on the client to perform authentication, which allows remote attackers to obtain access by setting the value of objresp.authenabled to 1. | 2 | 5 | Medium | 2017-01-19 | 2016-08-15 | View | |
| 20885 | CVE-2016-5669 | Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 use a hardcoded 0xb9eed4d955a59eb3 X.509 certificate from an OpenSSL Test Certification Authority, which makes it easier for remote attackers to conduct man-in-the-middle attacks against HTTPS sessions by leveraging the certificate"s trust relationship. | 2 | 5 | Medium | 2017-01-19 | 2016-08-15 | View | |
| 78750 | CVE-2001-1315 | Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed BER encodings, as demonstrated by the PROTOS LDAPv3 test suite. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
| 65563 | CVE-2006-7020 | CRLF injection vulnerability in (1) include/inc_act/act_formmailer.php and possibly (2) sample_ext_php/mail_file_form.php in phpwcms 1.2.5-DEV and earlier, and 1.1 before RC4, allows remote attackers to modify HTTP headers and send spam e-mail via a spoofed HTTP Referer (HTTP_REFERER). | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View |
Page 2698 of 17672, showing 5 records out of 88360 total, starting on record 13486, ending on 13490