NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72740  CVE-2004-2363  Validate-Before-Canonicalize vulnerability in the checkURI function in functions.inc.php in PHPX 3.0 through 3.2.6 allows remote attackers to conduct cross-site scripting (XSS) attacks via hex-encoded tags, which bypass the check for literal "<", ">", "(", and ")" characters, as demonstrated using the limit parameter to forums.php and a variety of other vectors.    4.3  Medium  2017-07-18  2017-07-10  View
78387  CVE-2001-0950  ValiCert Enterprise Validation Authority (EVA) Administration Server 3.3 through 4.2.1 uses insufficiently random data to (1) generate session tokens for HSMs using the C rand function, or (2) generate certificates or keys using /dev/urandom instead of another source which blocks when the entropy pool is low, which could make it easier for local or remote attackers to steal tokens or certificates via brute force guessing.    7.5  High  2017-01-05  2016-10-17  View
17958  CVE-2016-1608  vaconfig/time in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the ntpServer parameter.    High  2017-01-19  2016-11-28  View
75895  CVE-1999-1245  vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information.    Medium  2017-01-05  2008-09-05  View
74727  CVE-1999-0057  Vacation program allows command execution by remote users through a sendmail command.    7.5  High  2017-01-05  2008-09-09  View

Page 652 of 17672, showing 5 records out of 88360 total, starting on record 3256, ending on 3260

Actions