NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19353 | CVE-2016-3546 | Unspecified vulnerability in the Oracle Advanced Collections component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Report JSPs. | 2 | 9.4 | High | 2017-01-19 | 2016-11-28 | View | |
36251 | CVE-2014-9605 | WebUpgrade in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication and create a system backup tarball, restart the server, or stop the filters on the server via a " (single quote) character in the login and password parameters to webupgrade/webupgrade.php. NOTE: this was originally reported as an SQL injection vulnerability, but this may be inaccurate. | 2 | 9.4 | High | 2017-01-19 | 2015-09-04 | View | |
54438 | CVE-2007-2271 | Directory traversal vulnerability in Rajneel Lal TotaRam USP FOSS Distribution 1.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the dnld parameter. | 2 | 9.4 | High | 2017-01-07 | 2011-03-07 | View | |
87730 | CVE-2017-10917 | Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) or possibly obtain sensitive information, aka XSA-221. | 2 | 9.4 | High | 2017-07-18 | 2017-07-10 | View | |
1208 | CVE-2008-1249 | snomControl.swf in the central phone server for the Snom 320 SIP Phone allows remote attackers to cause a denial of service (application crash and corruption of call logs) via a ""); (double quote, quote, close parenthesis, semicolon) sequence in the "Call a number" field. | 2 | 9.4 | High | 2017-01-03 | 2008-09-05 | View |
Page 11 of 17672, showing 5 records out of 88360 total, starting on record 51, ending on 55