NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
79496  CVE-2002-0490  Instant Web Mail before 0.60 does not properly filter CR/LF sequences, which allows remote attackers to (1) execute arbitrary POP commands via the id parameter in message.php, or (2) modify certain mail message headers via numerous parameters in write.php.    10  High  2017-01-05  2008-09-05  View
79497  CVE-2002-0491  admin.php in AlGuest 1.0 guestbook checks for the existence of the admin cookie to authenticate the AlGuest administrator, which allows remote attackers to bypass the authentication and gain privileges by setting the admin cookie to an arbitrary value.    10  High  2017-01-05  2008-09-05  View
79498  CVE-2002-0492  dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.    Medium  2017-01-05  2008-09-05  View
79499  CVE-2002-0493  Apache Tomcat may be started without proper security settings if errors are encountered while reading the web.xml file, which could allow attackers to bypass intended restrictions.    7.5  High  2017-01-05  2016-10-24  View
79500  CVE-2002-0494  Cross-site scripting vulnerability in WebSight Directory System 0.1 allows remote attackers to execute arbitrary Javascript and gain access to the WebSight administrator via a new link submission containing the script in a website name.    7.5  High  2017-01-05  2008-09-05  View

Page 966 of 17672, showing 5 records out of 88360 total, starting on record 4826, ending on 4830

Actions