NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81342  CVE-2002-2391  SQL injection vulnerability in index.php of WebChat 1.5 included in XOOPS 1.0 allows remote attackers to execute arbitrary SQL commands via the roomid parameter.    7.5  High  2017-01-05  2008-09-05  View
57534  CVE-2007-5469  ** DISPUTED ** OpenSER 1.2.2 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote attackers to use sniffed Digest authentication credentials to call arbitrary telephone numbers or spoof caller ID (aka "toll fraud and authentication forward attack"). NOTE: Debian disputes this issue, stating that "having the two URIs mismatch is allowed by the standard and happens in some setups for valid reasons."    Medium  2017-01-07  2008-09-05  View
58046  CVE-2007-6025  Stack-based buffer overflow in driver_wext.c in wpa_supplicant 0.6.0 and earlier allows remote attackers to cause a denial of service (crash) via crafted TSF data.    7.1  High  2017-01-07  2008-09-05  View
58302  CVE-2007-6307  Multiple cross-site scripting (XSS) vulnerabilities in clickstats.php in wwwstats 3.21 allow remote attackers to inject arbitrary web script or HTML via (1) the link parameter or (2) the User-Agent HTTP header.    4.3  Medium  2017-01-07  2008-09-05  View
59070  CVE-2006-0331  Buffer overflow in Change passwd 3.1 (chpasswd) SquirrelMail plugin allows local users to execute arbitrary code via long command line arguments.    4.6  Medium  2016-12-20  2008-09-05  View

Page 1270 of 17672, showing 5 records out of 88360 total, starting on record 6346, ending on 6350

Actions