NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69720  CVE-2005-4082  The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.    4.6  Medium  2017-01-03  2008-09-05  View
4440  CVE-2008-4626  Directory traversal vulnerability in index.php in Fritz Berger yet another php photo album - next generation (yappa-ng) 2.3.2 and possibly other versions through 2.3.3-beta0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the album parameter.    6.8  Medium  2017-01-03  2009-01-29  View
69976  CVE-2005-4378  SQL injection vulnerability in Page.asp in Baseline CMS 1.95 and earlier allows remote attackers to execute arbitrary SQL commands via the SiteNodeID parameter.    7.5  High  2017-01-03  2011-03-07  View
4696  CVE-2008-4907  The message parsing feature in Dovecot 1.1.4 and 1.1.5, when using the FETCH ENVELOPE command in the IMAP client, allows remote attackers to cause a denial of service (persistent crash) via an email with a malformed From address, which triggers an assertion error, aka "invalid message address parsing bug."    4.3  Medium  2017-01-03  2009-01-23  View
70232  CVE-2005-4643  SQL injection vulnerability in index.php in Antharia OnContent // CMS allows remote attackers to execute arbitrary SQL commands via the pid parameter. NOTE: it is not clear, but this might be an application service provider, in which case it might be excluded from CVE.    7.5  High  2017-01-03  2008-09-05  View

Page 14671 of 17672, showing 5 records out of 88360 total, starting on record 73351, ending on 73355

Actions