NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
13832 | CVE-2010-2355 | Cross-site scripting (XSS) vulnerability in error.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script or HTML via the message parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-18 | 2010-06-22 | View | |
79368 | CVE-2002-0358 | MediaMail and MediaMail Pro in SGI IRIX 6.5.16 and earlier allows local users to force the program to dump core via certain arguments, which could allow the users to read sensitive data or gain privileges. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
14088 | CVE-2010-2639 | IBM WebSphere Commerce Enterprise 7.0 before 7.0.0.2 allows remote attackers to read messages intended for other recipients via vectors involving access by the outbound messaging system to the RunTimeProfileCacheCmdImpl class, related to the caching of mutable objects and "concurrency issues." | 2 | 5 | Medium | 2017-01-18 | 2011-01-12 | View | |
79624 | CVE-2002-0619 | The Mail Merge Tool in Microsoft Word 2002 for Windows, when Microsoft Access is present on a system, allows remote attackers to execute Visual Basic (VBA) scripts within a mail merge document that is saved in HTML format, aka a "Variant of MS00-071, Word Mail Merge Vulnerability" (CVE-2000-0788). | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
14344 | CVE-2010-2913 | The Citibank Citi Mobile app before 2.0.3 for iOS stores account data in a file, which allows local users to obtain sensitive information via vectors involving (1) the mobile device or (2) a synchronized computer. | 2 | 2.1 | Low | 2017-01-18 | 2010-08-12 | View |
Page 498 of 17672, showing 5 records out of 88360 total, starting on record 2486, ending on 2490