NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4667 | CVE-2008-4878 | Unrestricted file upload vulnerability in the "Add Image Macro" feature in WebCards 1.3 allows remote authenticated administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the uploaded file. | 2 | 8.5 | High | 2017-01-03 | 2009-05-14 | View | |
28475 | CVE-2015-8227 | The built-in web server in Huawei VP9660 multi-point control unit with software before V200R001C30SPC700 allows remote administrators to obtain sensitive information or cause a denial of service via a crafted message. | 2 | 8.5 | High | 2017-01-19 | 2016-09-13 | View | |
5437 | CVE-2008-5695 | wp-admin/options.php in WordPress MU before 1.3.2, and WordPress 2.3.2 and earlier, does not properly validate requests to update an option, which allows remote authenticated users with manage_options and upload_files capabilities to execute arbitrary code by uploading a PHP script and adding this script"s pathname to active_plugins. | 2 | 8.5 | High | 2017-01-03 | 2009-01-29 | View | |
71743 | CVE-2004-1364 | Directory traversal vulnerability in extproc in Oracle 9i and 10g allows remote attackers to access arbitrary libraries outside of the $ORACLE_HOMEin directory. | 2 | 8.5 | High | 2017-07-18 | 2017-07-10 | View | |
55616 | CVE-2007-3464 | Check Point SofaWare Safe@Office, with firmware before Embedded NGX 7.0.45 GA, does not require entry of the old password when changing the admin password, which might allow attackers to gain privileges by conducting a CSRF attack, making a password change on an unattended workstation, or other vectors. | 2 | 8.5 | High | 2017-01-07 | 2012-11-05 | View |
Page 1319 of 17672, showing 5 records out of 88360 total, starting on record 6591, ending on 6595