NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
15369 | CVE-2010-4051 | The regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attackers to cause a denial of service (application crash) via a regular expression containing adjacent bounded repetitions that bypass the intended RE_DUP_MAX limitation, as demonstrated by a {10,}{10,}{10,}{10,}{10,} sequence in the proftpd.gnu.c exploit for ProFTPD, related to a "RE_DUP_MAX overflow." | 2 | 5 | Medium | 2017-01-18 | 2011-02-02 | View | |
80905 | CVE-2002-1954 | Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the query string argument, as demonstrated using soinfo.php. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
15625 | CVE-2010-4370 | Multiple integer overflows in the in_midi plugin in Winamp before 5.6 allow remote attackers to execute arbitrary code via a crafted MIDI file that triggers a buffer overflow. | 2 | 9.3 | High | 2017-01-18 | 2011-09-08 | View | |
81161 | CVE-2002-2210 | The installation of OpenOffice 1.0.1 allows local users to overwrite files and possibly gain privileges via a symlink attack on the USERNAME_autoresponse.conf temporary file. | 2 | 6.2 | Medium | 2017-01-05 | 2008-09-05 | View | |
15881 | CVE-2010-4634 | ** DISPUTED ** Directory traversal vulnerability in osTicket 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to module.php, a different vector than CVE-2005-1439. NOTE: this issue has been disputed by a reliable third party. | 2 | 5 | Medium | 2017-01-18 | 2010-12-31 | View |
Page 636 of 17672, showing 5 records out of 88360 total, starting on record 3176, ending on 3180