NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5903 | CVE-2008-6172 | Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the img parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-30 | View | |
71439 | CVE-2004-1039 | The NFS mountd service on SCO UnixWare 7.1.1, 7.1.3, 7.1.4, and 7.0.1, and possibly other versions, when run from inetd, allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests, which causes inetd to launch a separate process for each request. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
6159 | CVE-2008-6428 | The CGI framework in Kaya 0.4.0 allows remote attackers to inject arbitrary HTTP headers and conduct cross-site scripting (XSS) attacks via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
71695 | CVE-2004-1315 | viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by double-encoding the highlight value so that special characters are inserted into the result, which is then processed by PHP exec, as exploited by the Santy.A worm. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
6415 | CVE-2008-6684 | Unrestricted file upload vulnerability in editimage.php in Apartment Search Script allows remote attackers to execute arbitrary code by uploading a file with an executable extension and a GIF header, then accessing this file via a direct request to a renamed file in Member_Admin/logo/. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-13 | View |
Page 1029 of 17672, showing 5 records out of 88360 total, starting on record 5141, ending on 5145