NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78916 | CVE-2001-1482 | SQL injection vulnerability in bb_memberlist.php for phpBB 1.4.2 allows remote attackers to execute arbitrary SQL queries via the $sortby variable. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
78917 | CVE-2001-1483 | One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and static passphrases if the user account does exist. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
78918 | CVE-2001-1484 | Alcatel ADSL modems allow remote attackers to access the Trivial File Transfer Protocol (TFTP) to modify firmware and configuration via a bounce attack from a system on the local area network (LAN) side, which is allowed to access TFTP without authentication. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
78919 | CVE-2001-1487 | popauth utility in Qualcomm Qpopper 4.0 and earlier allows local users to overwrite arbitrary files and execute commands as the pop user via a symlink attack on the -trace file option. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
78920 | CVE-2001-1488 | Open Projects Network Internet Relay Chat (IRC) daemon u2.10.05.18 does not perform a double-reverse DNS lookup, which allows remote attackers to spoof any valid hostname on the Internet. NOTE: a followup post suggests that this is not an issue in the daemon. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 850 of 17672, showing 5 records out of 88360 total, starting on record 4246, ending on 4250