NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68111 | CVE-2005-2420 | flsearch.pl in FtpLocate 2.02 allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP GET request. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
2831 | CVE-2008-2937 | Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user"s account name. | 2 | 1.9 | Low | 2017-01-03 | 2016-12-07 | View | |
68367 | CVE-2005-2678 | Microsoft IIS 5.1 and 6 allows remote attackers to spoof the SERVER_NAME variable to bypass security checks and conduct various attacks via a GET request with an http://localhost URI, which makes it appear as if the request is coming from localhost. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
3087 | CVE-2008-3204 | SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQL commands via the id_cat parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
68623 | CVE-2005-2959 | Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are. | 2 | 4.6 | Medium | 2017-01-03 | 2011-07-28 | View |
Page 1024 of 17672, showing 5 records out of 88360 total, starting on record 5116, ending on 5120