NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14869 | CVE-2010-3490 | Directory traversal vulnerability in page.recordings.php in the System Recordings component in the configuration interface in FreePBX 2.8.0 and earlier allows remote authenticated administrators to create arbitrary files via a .. (dot dot) in the usersnum parameter to admin/config.php, as demonstrated by creating a .php file under the web root. | 2 | 6.5 | Medium | 2017-01-18 | 2013-09-03 | View | |
15125 | CVE-2010-3780 | Dovecot 1.2.x before 1.2.15 allows remote authenticated users to cause a denial of service (master process outage) by simultaneously disconnecting many (1) IMAP or (2) POP3 sessions. | 2 | 4 | Medium | 2017-01-18 | 2011-08-26 | View | |
80917 | CVE-2002-1966 | Directory traversal vulnerability in magiccard.cgi in My Postcards Platinum 5.0 and 6.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
81173 | CVE-2002-2222 | isakmpd/message.c in isakmpd in FreeBSD before isakmpd-20020403_1, and in OpenBSD 3.1, allows remote attackers to cause a denial of service (crash) by sending Internet Key Exchange (IKE) payloads out of sequence. | 2 | 5.1 | Medium | 2017-01-05 | 2008-09-05 | View | |
15893 | CVE-2010-4646 | Cross-site scripting (XSS) vulnerability in Hastymail2 before 1.01 allows remote attackers to inject arbitrary web script or HTML via a crafted background attribute within a cell in a TABLE element, related to improper use of the htmLawed filter. | 2 | 4.3 | Medium | 2017-01-18 | 2011-02-04 | View |
Page 766 of 17672, showing 5 records out of 88360 total, starting on record 3826, ending on 3830