NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80057 | CVE-2002-1061 | Multiple buffer overflows in Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) an HTTP GET request with a long major version number, (2) an HTTP GET request to the HTTP proxy on port 3128 with a long major version number, (3) a long OK reply from a POP3 server, and (4) a long SMTP server response. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80825 | CVE-2002-1874 | astrocam.cgi in AstroCam 0.9-1-1 through 1.4.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request. NOTE: earlier disclosures stated that the affected versions were 1.7.1 through 2.1.2, but the vendor explicitly stated that these were incorrect. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
81081 | CVE-2002-2130 | publish_xp_docs.php in Gallery 1.3.2 allows remote attackers to execute arbitrary PHP code by modifying the GALLERY_BASEDIR parameter to reference a URL on a remote web server that contains the code. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
81337 | CVE-2002-2386 | Cross-site scripting (XSS) vulnerability in the Quizz module for XOOPS 1.0, when allowing on-line question development, allows remote attackers to inject arbitrary web script or HTML via a javascript: URL in the SRC attribute of an IMG tag. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
56761 | CVE-2007-4641 | Directory traversal vulnerability in index.php in Pakupaku CMS 0.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter, as demonstrated by injecting code into an Apache log file. | 2 | 6.4 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 1236 of 17672, showing 5 records out of 88360 total, starting on record 6176, ending on 6180