NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66766 | CVE-2005-1017 | SQL injection vulnerability in the Update_Events function in events_functions.asp in MaxWebPortal 1.33 and earlier allows remote attackers to execute arbitrary SQL commands via the EVENT_ID parameter, as demonstrated using events.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67022 | CVE-2005-1283 | Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1) read arbitrary files via the UIDL parameter to the msg script or (2) copy or move the user's .eml file to arbitrary locations via the delete script, a different vulnerability than CVE-2005-0367. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67278 | CVE-2005-1551 | Sophos Anti-Virus 3.93 does not check downloaded files for viruses when they have only been written, which creates a race condition and may allow remote attackers to bypass virus protection if the file is executed before the antivirus starts on system reboot. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
67790 | CVE-2005-2081 | Stack-based buffer overflow in the function that parses commands in Asterisk 1.0.7, when the 'write = command' option is enabled, allows remote attackers to execute arbitrary code via a command that has two double quotes followed by a tab character. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68302 | CVE-2005-2613 | Unknown vulnerability in CPAINT Ajax Toolkit before 1.3-SP allows attackers to execute arbitrary PHP or ASP code or read files via unknown vectors. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1034 of 17672, showing 5 records out of 88360 total, starting on record 5166, ending on 5170