NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14340 | CVE-2010-2909 | SQL injection vulnerability in ttvideo.php in the TTVideo (com_ttvideo) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter in a video action to index.php. | 2 | 7.5 | High | 2017-01-18 | 2010-07-29 | View | |
79876 | CVE-2002-0878 | SQL injection vulnerability in the login form for LogiSense software including (1) Hawk-i Billing, (2) Hawk-i ASP and (3) DNS Manager allows remote attackers to bypass authentication via SQL code in the password field. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
14596 | CVE-2010-3178 | Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 do not properly handle certain modal calls made by javascript: URLs in circumstances related to opening a new window and performing cross-domain navigation, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document. | 2 | 5.8 | Medium | 2017-01-18 | 2011-07-18 | View | |
80132 | CVE-2002-1139 | The Compressed Folders feature in Microsoft Windows 98 with Plus! Pack, Windows Me, and Windows XP does not properly check the destination folder during the decompression of ZIP files, which allows attackers to place an executable file in a known location on a user"s system, aka "Incorrect Target Path for Zipped File Decompression." | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View | |
14852 | CVE-2010-3472 | Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-21 | View |
Page 295 of 17672, showing 5 records out of 88360 total, starting on record 1471, ending on 1475