NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
13067 | CVE-2010-1543 | Cross-site scripting (XSS) vulnerability in the eTracker module before 6.x-1.2 for Drupal allows remote attackers to inject arbitrary web script or HTML by appending a crafted string to an arbitrary URL associated with the Drupal site. | 2 | 4.3 | Medium | 2017-01-18 | 2010-05-24 | View | |
78603 | CVE-2001-1168 | Directory traversal vulnerability in index.php in PhpMyExplorer before 1.2.1 allows remote attackers to read arbitrary files via a ..%2F (modified dot dot) in the chemin parameter. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View | |
13323 | CVE-2010-1828 | AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon restart) via crafted reconnect authentication packets. | 2 | 5 | Medium | 2017-01-18 | 2010-12-10 | View | |
78859 | CVE-2001-1425 | The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
13579 | CVE-2010-2092 | SQL injection vulnerability in graph.php in Cacti 0.8.7e and earlier allows remote attackers to execute arbitrary SQL commands via a crafted rra_id parameter in a GET request in conjunction with a valid rra_id value in a POST request or a cookie, which causes the POST or cookie value to bypass the validation routine, but inserts the $_GET value into the resulting query. | 2 | 7.5 | High | 2017-01-18 | 2012-02-15 | View |
Page 768 of 17672, showing 5 records out of 88360 total, starting on record 3836, ending on 3840