NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12262  CVE-2010-0716  _layouts/Upload.aspx in the Documents module in Microsoft SharePoint before 2010 uses URLs with the same hostname and port number for a web site"s primary files and individual users" uploaded files (aka attachments), which allows remote authenticated users to leverage same-origin relationships and conduct cross-site scripting (XSS) attacks by uploading TXT files, a related issue to CVE-2008-5026. NOTE: the vendor disputes the significance of this issue, because cross-domain isolation can be implemented when needed.    3.5  Low  2017-01-18  2010-06-05  View
1060  CVE-2008-1099  _macro_Getval in wikimacro.py in MoinMoin 1.5.8 and earlier does not properly enforce ACLs, which allows remote attackers to read protected pages.    Medium  2017-01-03  2009-02-05  View
2580  CVE-2008-2682  _RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.    7.5  High  2017-01-03  2008-09-10  View
70311  CVE-2005-4722  _Request_Message.cfm in tmsPUBLISHER 3.3 allows remote attackers to obtain sensitive information via an invalid id argument to pagename.cfm, which reveals the installation path in an error message.    Medium  2017-01-03  2008-09-05  View
20890  CVE-2016-5674  __debugging_center_utils___.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.7.5 through 3.0.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remote attackers to execute arbitrary PHP code via the log parameter.    10  High  2017-01-19  2016-11-28  View

Page 17672 of 17672, showing 5 records out of 88360 total, starting on record 88356, ending on 88360

<<first 17664 | 17665 | 17666 | 17667 | 17668 | 17669 | 17670 | 17671 | 17672 next>

Actions