NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6561 | CVE-2008-6830 | The disconnection feature in Citrix Web Interface 5.0 and 5.0.1 for Java Application Servers does not properly terminate a user"s web interface session, which allows attackers with access to the same browser instance to gain access to the user"s Web Interface session. NOTE: the attacker must also have valid credentials to the Web Interface. | 2 | 4 | Medium | 2017-01-03 | 2009-06-09 | View | |
| 72865 | CVE-2004-2488 | Directory traversal vulnerability in Nexgen FTP Server before 2.2.3.23 allows remote authenticated users to read or list arbitrary files via "C:" sequences in the (1) RETR (get), (2) NLST (ls), (3) LIST (ls), (4) RNFR, or (5) RNTO FTP commands. | 2 | 4 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 74401 | CVE-2003-1331 | Stack-based buffer overflow in the mysql_real_connect function in the MySql client library (libmysqlclient) 4.0.13 and earlier allows local users to execute arbitrary code via a long socket name, a different vulnerability than CVE-2001-1453. | 2 | 4 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 10401 | CVE-2011-3829 | ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message. | 2 | 4 | Medium | 2017-01-07 | 2012-02-02 | View | |
| 11169 | CVE-2011-4831 | Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action. | 2 | 4 | Medium | 2017-01-07 | 2012-02-09 | View |
Page 14605 of 17672, showing 5 records out of 88360 total, starting on record 73021, ending on 73025