NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2063 | CVE-2008-2129 | SQL injection vulnerability in index.php in Galleristic 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-11-26 | View | |
67599 | CVE-2005-1881 | upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2319 | CVE-2008-2403 | Multiple directory traversal vulnerabilities in unspecified ASP applications in Sun Java Active Server Pages (ASP) Server before 4.0.3 allow remote attackers to read or delete arbitrary files via a .. (dot dot) in the Path parameter to the MapPath method. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
67855 | CVE-2005-2151 | spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2575 | CVE-2008-2677 | Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-14 | View |
Page 1023 of 17672, showing 5 records out of 88360 total, starting on record 5111, ending on 5115