NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14595 | CVE-2010-3177 | Multiple cross-site scripting (XSS) vulnerabilities in the Gopher parser in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, and SeaMonkey before 2.0.9, allow remote attackers to inject arbitrary web script or HTML via a crafted name of a (1) file or (2) directory on a Gopher server. | 2 | 4.3 | Medium | 2017-01-18 | 2013-07-23 | View | |
80131 | CVE-2002-1138 | Microsoft SQL Server 7.0 and 2000, including Microsoft Data Engine (MSDE) 1.0 and Microsoft Desktop Engine (MSDE) 2000, writes output files for scheduled jobs under its own privileges instead of the entity that launched it, which allows attackers to overwrite system files, aka "Flaw in Output File Handling for Scheduled Jobs." | 2 | 7.5 | High | 2017-01-05 | 2008-09-10 | View | |
14851 | CVE-2010-3471 | Session fixation vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.7-P8AE-FP007 allows remote attackers to hijack web sessions via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-21 | View | |
80387 | CVE-2002-1434 | Multiple cross-site scripting (XSS) vulnerabilities in the Web mail module of Kerio MailServer 5.0 allow remote attackers to execute HTML script as other users via certain URLs. | 2 | 6.8 | Medium | 2017-01-05 | 2008-09-05 | View | |
15107 | CVE-2010-3762 | ISC BIND before 9.7.2-P2, when DNSSEC validation is enabled, does not properly handle certain bad signatures if multiple trust anchors exist for a single zone, which allows remote attackers to cause a denial of service (daemon crash) via a DNS query. | 2 | 4.3 | Medium | 2017-01-18 | 2016-04-04 | View |
Page 578 of 17672, showing 5 records out of 88360 total, starting on record 2886, ending on 2890