NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78966 | CVE-2001-1535 | Slashcode 2.0 creates new accounts with an 8-character random password, which could allow local users to obtain session ID"s from cookies and gain unauthorized access via a brute force attack. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
78967 | CVE-2001-1536 | Autogalaxy stores usernames and passwords in cleartext in cookies, which makes it easier for remote attackers to obtain authentication information and gain unauthorized access via sniffing or a cross-site scripting attack. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78968 | CVE-2001-1537 | The default "basic" security setting" in config.php for TWIG webmail 2.7.4 and earlier stores cleartext usernames and passwords in cookies, which could allow attackers to obtain authentication information and gain privileges. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
78969 | CVE-2001-1538 | SpeedXess HA-120 DSL router has a default administrative password of "speedxess", which allows remote attackers to gain access. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
78970 | CVE-2001-1539 | Stack consumption vulnerability in Internet Explorer The JavaScript settimeout function in Internet Explorer allows remote attackers to cause a denial of service (crash) via the JavaScript settimeout function. NOTE: the vendor could not reproduce the problem. | 2 | 5 | Medium | 2017-01-05 | 2010-01-08 | View |
Page 860 of 17672, showing 5 records out of 88360 total, starting on record 4296, ending on 4300