NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80485 | CVE-2002-1532 | The administrative web interface (STEMWADM) for SurfControl SuperScout Email Filter allows remote attackers to cause a denial of service (resource exhaustion) via a GET request without the terminating /r/n/r/n (CRLF) sequence, which causes the interface to wait for the sequence and blocks other users from accessing it. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80741 | CVE-2002-1790 | The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote attackers to bypass anti-relaying rules and send spam or spoofed messages via encapsulated SMTP addresses, a similar vulnerability to CVE-1999-0682. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80997 | CVE-2002-2046 | x_news.php in X-News (x_news) 1.1 and earlier allows remote attackers to gain administrative privileges by stealing and replaying the md5_password cookie. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
81253 | CVE-2002-2302 | 3D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying the price in a hidden form field. | 2 | 6.4 | Medium | 2017-01-05 | 2008-09-05 | View | |
53861 | CVE-2007-1679 | ** DISPUTED ** Multiple cross-site scripting (XSS) vulnerabilities in Horde Groupware Webmail 1.0 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors in (1) imp/search.php and (2) ingo/rule.php. NOTE: this issue has been disputed by the vendor, noting that the search.php issue was resolved in CVE-2006-4255, and attackers can only use rule.php to inject XSS into their own pages. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 648 of 17672, showing 5 records out of 88360 total, starting on record 3236, ending on 3240