NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
12809 | CVE-2010-1277 | SQL injection vulnerability in the user.authenticate method in the API in Zabbix 1.8 before 1.8.2 allows remote attackers to execute arbitrary SQL commands via the user parameter in JSON data to api_jsonrpc.php. | 2 | 7.5 | High | 2017-01-18 | 2010-06-07 | View | |
78345 | CVE-2001-0908 | CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through Network Address Translation (NAT). | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
13065 | CVE-2010-1541 | Multiple cross-site scripting (XSS) vulnerabilities in DFD Cart 1.198, 1.197, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) category and (2) list_quantity parameters to index.php, and the (3) category parameter to your.order.php. | 2 | 4.3 | Medium | 2017-01-18 | 2010-04-27 | View | |
78601 | CVE-2001-1166 | linprocfs on FreeBSD 4.3 and earlier does not properly restrict access to kernel memory, which allows one process with debugging rights on a privileged process to read restricted memory from that process. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
13321 | CVE-2010-1824 | Use-after-free vulnerability in WebKit, as used in Apple iTunes before 10.2 on Windows, Apple Safari, and Google Chrome before 6.0.472.59, allows remote attackers to execute arbitrary code or cause a denial of service via vectors related to SVG styles, the DOM tree, and error messages. | 2 | 9.3 | High | 2017-01-18 | 2011-07-18 | View |
Page 632 of 17672, showing 5 records out of 88360 total, starting on record 3156, ending on 3160