NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 13906 | CVE-2010-2432 | The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for authorization, which allows remote CUPS servers to cause a denial of service (infinite loop) via HTTP_UNAUTHORIZED responses. | 2 | 5 | Medium | 2017-01-18 | 2013-05-14 | View | |
| 13907 | CVE-2010-2433 | Multiple cross-site scripting (XSS) vulnerabilities in content/internalError.jsp in IBM WebSphere ILOG JRules 6.7 allow remote attackers to inject arbitrary web script or HTML via an RTS URL to (1) explore/explore.jsp, (2) compose/compose.jsp, or (3) home.jsp in faces/. | 2 | 4.3 | Medium | 2017-01-18 | 2010-06-24 | View | |
| 13908 | CVE-2010-2434 | Buffer overflow in Arcext.dll 2.16.1 and earlier in pon software Explzh 5.62 and earlier allows remote attackers to execute arbitrary code via an LZH LHA file with a crafted header that is not properly handled during expansion. | 2 | 9.3 | High | 2017-01-18 | 2010-06-29 | View | |
| 13909 | CVE-2010-2435 | Weborf HTTP Server 0.12.1 and earlier allows remote attackers to cause a denial of service (crash) via Unicode characters in a Connection HTTP header, and possibly other headers. | 2 | 5 | Medium | 2017-01-18 | 2010-06-25 | View | |
| 13910 | CVE-2010-2436 | SQL injection vulnerability in modules/blog/index.php in AneCMS Blog 1.3 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the PATH_INFO. | 2 | 7.5 | High | 2017-01-18 | 2010-06-25 | View |
Page 2782 of 17672, showing 5 records out of 88360 total, starting on record 13906, ending on 13910