NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12809  CVE-2010-1277  SQL injection vulnerability in the user.authenticate method in the API in Zabbix 1.8 before 1.8.2 allows remote attackers to execute arbitrary SQL commands via the user parameter in JSON data to api_jsonrpc.php.    7.5  High  2017-01-18  2010-06-07  View
78345  CVE-2001-0908  CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through Network Address Translation (NAT).    7.5  High  2017-01-05  2016-10-17  View
13065  CVE-2010-1541  Multiple cross-site scripting (XSS) vulnerabilities in DFD Cart 1.198, 1.197, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) category and (2) list_quantity parameters to index.php, and the (3) category parameter to your.order.php.    4.3  Medium  2017-01-18  2010-04-27  View
78601  CVE-2001-1166  linprocfs on FreeBSD 4.3 and earlier does not properly restrict access to kernel memory, which allows one process with debugging rights on a privileged process to read restricted memory from that process.    Medium  2017-01-05  2008-09-05  View
13321  CVE-2010-1824  Use-after-free vulnerability in WebKit, as used in Apple iTunes before 10.2 on Windows, Apple Safari, and Google Chrome before 6.0.472.59, allows remote attackers to execute arbitrary code or cause a denial of service via vectors related to SVG styles, the DOM tree, and error messages.    9.3  High  2017-01-18  2011-07-18  View

Page 632 of 17672, showing 5 records out of 88360 total, starting on record 3156, ending on 3160

Actions