NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68469 | CVE-2005-2782 | PHP remote file inclusion vulnerability in al_initialize.php for AutoLinks Pro 2.1 allows remote attackers to execute arbitrary PHP code via an "ftp://" URL in the alpath parameter, which bypasses the incomplete blacklist that only checks for "http" and "https" URLs. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
68981 | CVE-2005-3319 | The apache2handler SAPI (sapi_apache2.c) in the Apache module (mod_php) for PHP 5.x before 5.1.0 final and 4.4 before 4.4.1 final allows attackers to cause a denial of service (segmentation fault) via the session.save_path option in a .htaccess file or VirtualHost. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
70773 | CVE-2004-0322 | Multiple cross-site scripting (XSS) vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to execute arbitrary script as other users via the (1) member parameter in member.php, (2) uid parameter in u2uadmin.php, (3) user parameter in editprofile.php, (4) an onmouseover event in an align tag when bbcode is allowed, or (5) img tag where bbcode is allowed. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
71029 | CVE-2004-0602 | The binary compatibility mode for FreeBSD 4.x and 5.x does not properly handle certain Linux system calls, which could allow local users to access kernel memory to gain privileges or cause a system panic. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
71285 | CVE-2004-0875 | Multiple cross-site scripting (XSS) vulnerabilities in Phpgroupware (aka webdistro) 0.9.16.002 and earlier allow remote attackers to insert arbitrary HTML or web script, as demonstrated with a request to the wiki module. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1130 of 17672, showing 5 records out of 88360 total, starting on record 5646, ending on 5650