NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67854 | CVE-2005-2150 | Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does not properly prevent NULL sessions from accessing certain alternate named pipes, which allows remote attackers to (1) list Windows services via svcctl or (2) read eventlogs via eventlog. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
2574 | CVE-2008-2676 | SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68110 | CVE-2005-2419 | B-FOCuS Router 312+ allows remote attackers to bypass authentication and gain unauthorized access via a direct request to firmwarecfg. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
2830 | CVE-2008-2936 | Postfix before 2.3.15, 2.4 before 2.4.8, 2.5 before 2.5.4, and 2.6 before 2.6-20080814, when the operating system supports hard links to symlinks, allows local users to append e-mail messages to a file to which a root-owned symlink points, by creating a hard link to this symlink and then sending a message. NOTE: this can be leveraged to gain privileges if there is a symlink to an init script. | 2 | 6.2 | Medium | 2017-01-03 | 2011-03-07 | View | |
68366 | CVE-2005-2677 | ACNews stores the database in a file under the web document root with a db.inc extension and insufficient access control, which allows remote attackers to obtain sensitive information such as the full pathname of the server. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1306 of 17672, showing 5 records out of 88360 total, starting on record 6526, ending on 6530