NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80404 | CVE-2002-1451 | Blazix before 1.2.2 allows remote attackers to read source code of JSP scripts or list restricted web directories via an HTTP request that ends in a (1) "+" or (2) "" (backslash) character. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80660 | CVE-2002-1709 | SQL injection vulnerability in BasiliX Webmail 1.10 allows remote attackers to obtain sensitive information or possibly modify data via the id variable. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View | |
80916 | CVE-2002-1965 | Cross-site scripting (XSS) vulnerability in Errors.gsl in Imatix Xitami 2.5b4 and 2.5b5 allows remote attackers to inject arbitrary web script or HTML via the (1) Javascript events, as demonstrated via an onerror event in an IMG SRC tag or (2) User-Agent field in an HTTP GET request. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
81172 | CVE-2002-2221 | Untrusted search path vulnerability in Pedro Lineu Orso chetcpasswd 2.4.1 and earlier allows local users to gain privileges via a modified PATH that references a malicious cp binary. NOTE: this issue might overlap CVE-2006-6639. | 2 | 6.2 | Medium | 2017-01-05 | 2008-09-05 | View | |
15892 | CVE-2010-4645 | strtod.c, as used in the zend_strtod function in PHP 5.2 before 5.2.17 and 5.3 before 5.3.5, and other products, allows context-dependent attackers to cause a denial of service (infinite loop) via a certain floating-point value in scientific notation, which is not properly handled in x87 FPU registers, as demonstrated using 2.2250738585072011e-308. | 2 | 5 | Medium | 2017-01-18 | 2016-08-22 | View |
Page 731 of 17672, showing 5 records out of 88360 total, starting on record 3651, ending on 3655