NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2063  CVE-2008-2129  SQL injection vulnerability in index.php in Galleristic 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat parameter.    6.8  Medium  2017-01-03  2008-11-26  View
67599  CVE-2005-1881  upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code.    7.5  High  2017-01-03  2008-09-05  View
2319  CVE-2008-2403  Multiple directory traversal vulnerabilities in unspecified ASP applications in Sun Java Active Server Pages (ASP) Server before 4.0.3 allow remote attackers to read or delete arbitrary files via a .. (dot dot) in the Path parameter to the MapPath method.    10  High  2017-01-03  2011-03-07  View
67855  CVE-2005-2151  spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption.    Medium  2017-01-03  2008-09-05  View
2575  CVE-2008-2677  Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter.    4.3  Medium  2017-01-03  2009-04-14  View

Page 1023 of 17672, showing 5 records out of 88360 total, starting on record 5111, ending on 5115

Actions