NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
14103  CVE-2010-2654  Multiple cross-site scripting (XSS) vulnerabilities on the IBM BladeCenter with Advanced Management Module (AMM) firmware build ID BPET48L, and possibly other versions before 4.7 and 5.0, allow remote attackers to inject arbitrary web script or HTML via the (1) INDEX or (2) IPADDR parameter to private/cindefn.php, (3) the domain parameter to private/power_management_policy_options.php, the slot parameter to (4) private/pm_temp.php or (5) private/power_module.php, (6) the WEBINDEX parameter to private/blade_leds.php, or (7) the SLOT parameter to private/ipmi_bladestatus.php.    4.3  Medium  2017-01-18  2010-07-20  View
79895  CVE-2002-0898  Opera 6.0.1 and 6.0.2 allows a remote web site to upload arbitrary files from the client system, without prompting the client, via an input type=file tag whose value contains a newline.    Medium  2017-01-05  2016-10-17  View
80151  CVE-2002-1159  Canna 3.6 and earlier does not properly validate requests, which allows remote attackers to cause a denial of service or information leak.    6.4  Medium  2017-01-05  2008-09-10  View
14871  CVE-2010-3492  The asyncore module in Python before 3.2 does not properly handle unsuccessful calls to the accept function, and does not have accompanying documentation describing how daemon applications should handle unsuccessful calls to the accept function, which makes it easier for remote attackers to conduct denial of service attacks that terminate these applications via network connections.    Medium  2017-01-18  2011-07-18  View
80407  CVE-2002-1454  MyWebServer 1.0.2 allows remote attackers to determine the absolute path of the web document root via a request for a directory that does not exist, which leaks the pathname in an error message.    Medium  2017-01-05  2016-10-17  View

Page 838 of 17672, showing 5 records out of 88360 total, starting on record 4186, ending on 4190

Actions