NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 12598 | CVE-2010-1064 | Erolife AjxGaleri VT stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/ajxgaleri.mdb. | 2 | 5 | Medium | 2017-01-18 | 2010-06-23 | View | |
| 78134 | CVE-2001-0681 | Buffer overflow in ftpd in QPC QVT/Net 5.0 and QVT/Term 5.0 allows a remote attacker to cause a denial of service via a long (1) username or (2) password. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 12854 | CVE-2010-1322 | The merge_authdata function in kdc_authdata.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8.x before 1.8.4 does not properly manage an index into an authorization-data list, which allows remote attackers to cause a denial of service (daemon crash), or possibly obtain sensitive information, spoof authorization, or execute arbitrary code, via a TGS request that triggers an uninitialized pointer dereference, as demonstrated by a request from a Windows Active Directory client. | 2 | 6.5 | Medium | 2017-01-18 | 2011-01-14 | View | |
| 78390 | CVE-2001-0953 | Kebi WebMail allows remote attackers to access the administrator menu and gain privileges via the /a/ hidden directory, which is installed under the web document root. | 2 | 10 | High | 2017-01-05 | 2016-10-17 | View | |
| 13110 | CVE-2010-1590 | Cross-site scripting (XSS) vulnerability in shopsessionsubs.asp in Rocksalt International VP-ASP Shopping Cart 6.50 and earlier might allow remote attackers to inject arbitrary web script or HTML via the client"s DNS hostname (aka the REMOTE_HOST variable), related to the CookielessGenerateFilename and CookielessReadFile functions. | 2 | 4.3 | Medium | 2017-01-18 | 2010-04-29 | View |
Page 3265 of 17672, showing 5 records out of 88360 total, starting on record 16321, ending on 16325