NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54718 | CVE-2007-2554 | Associated Press (AP) Newspower 4.0.1 and earlier uses a default blank password for the MySQL root account, which allows remote attackers to insert or modify news articles via shows.tblscript. | 2 | 7.8 | High | 2017-01-07 | 2008-11-15 | View | |
80688 | CVE-2002-1737 | Astaro Security Linux 2.016 creates world-writable files and directories, which allows local users to overwrite arbitrary files. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
72982 | CVE-2004-2605 | aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
62985 | CVE-2006-4346 | Asterisk 1.2.10 supports the use of client-controlled variables to determine filenames in the Record function, which allows remote attackers to (1) execute code via format string specifiers or (2) overwrite files via directory traversals involving unspecified vectors, as demonstrated by the CALLERIDNAME variable. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
53504 | CVE-2007-1306 | Asterisk 1.4 before 1.4.1 and 1.2 before 1.2.16 allows remote attackers to cause a denial of service (crash) by sending a Session Initiation Protocol (SIP) packet without a URI and SIP-version header, which results in a NULL pointer dereference. | 2 | 7.8 | High | 2017-01-07 | 2011-03-07 | View |
Page 1434 of 17672, showing 5 records out of 88360 total, starting on record 7166, ending on 7170