NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67803 | CVE-2005-2094 | Sun SunONE web server 6.1 SP1 allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes SunONE to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling." | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
68571 | CVE-2005-2896 | SQL injection vulnerability in WEB//NEWS 1.4 allows remote attackers to execute arbitrary SQL commands via the (1) wn_userpw parameter to startup.php, (2) cat, (3) id, or (4) stof parameter to news.php, or (5) id parameter to print.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
69339 | CVE-2005-3701 | Unspecified vulnerability in passwordserver in Mac OS X Server 10.3.9 and 10.4.3, when creating an Open Directory master server, allows local users to gain privileges via unknown attack vectors. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
70619 | CVE-2004-0162 | Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME encapsulation that uses RFC822 comment fields, which may be interpreted as other fields by mail clients. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70875 | CVE-2004-0428 | Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an environment variable," has unknown attack vectors and unknown impact. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1085 of 17672, showing 5 records out of 88360 total, starting on record 5421, ending on 5425