NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
79876  CVE-2002-0878  SQL injection vulnerability in the login form for LogiSense software including (1) Hawk-i Billing, (2) Hawk-i ASP and (3) DNS Manager allows remote attackers to bypass authentication via SQL code in the password field.    7.5  High  2017-01-05  2008-09-05  View
14596  CVE-2010-3178  Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 do not properly handle certain modal calls made by javascript: URLs in circumstances related to opening a new window and performing cross-domain navigation, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document.    5.8  Medium  2017-01-18  2011-07-18  View
80132  CVE-2002-1139  The Compressed Folders feature in Microsoft Windows 98 with Plus! Pack, Windows Me, and Windows XP does not properly check the destination folder during the decompression of ZIP files, which allows attackers to place an executable file in a known location on a user"s system, aka "Incorrect Target Path for Zipped File Decompression."    Medium  2017-01-05  2008-09-10  View
14852  CVE-2010-3472  Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-18  2010-09-21  View
80388  CVE-2002-1435  class.atkdateattribute.js.php in Achievo 0.7.0 through 0.9.1, except 0.8.2, allows remote attackers to execute arbitrary PHP code when the "allow_url_fopen" setting is enabled via a URL in the config_atkroot parameter that points to the code.    7.5  High  2017-01-05  2008-09-05  View

Page 646 of 17672, showing 5 records out of 88360 total, starting on record 3226, ending on 3230

Actions