NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
76582  CVE-2000-0339  ZoneAlarm 2.1.10 and earlier does not filter UDP packets with a source port of 67, which allows remote attackers to bypass the firewall rules.    7.5  High  2017-01-05  2008-09-10  View
11302  CVE-2011-5042  Cross-site scripting (XSS) vulnerability in inc/lib/lib.base.php in SASHA 0.2.0 allows remote attackers to inject arbitrary web script or HTML via the instructors parameter. NOTE: the original disclosure also mentions the section_title parameter, but this was disputed by the vendor and retracted by the original researcher.    4.3  Medium  2017-01-07  2012-01-02  View
76838  CVE-2000-0597  Microsoft Office 2000 (Excel and PowerPoint) and PowerPoint 97 are marked as safe for scripting, which allows remote attackers to force Internet Explorer or some email clients to save files to arbitrary locations via the Visual Basic for Applications (VBA) SaveAs function, aka the "Office HTML Script" vulnerability.    7.5  High  2017-01-05  2008-09-10  View
11558  CVE-2011-5306  Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/setup_edit.cgi in CosmoShop ePRO 10.05.00 allows remote attackers to hijack the authentication of administrators for requests that modify settings via a setup action.    6.8  Medium  2017-01-07  2015-01-02  View
77094  CVE-2000-0860  The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables.    Medium  2017-01-05  2008-09-05  View

Page 2947 of 17672, showing 5 records out of 88360 total, starting on record 14731, ending on 14735

Actions