NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4270  CVE-2008-4447  Cross-site scripting (XSS) vulnerability in actions.php in Positive Software H-Sphere WebShell 4.3.10 allows remote attackers to inject arbitrary web script or HTML via (1) the fn parameter during a dload action, (2) the mask parameter during a search action, and (3) the tab parameter during a sysinfo action.    4.3  Medium  2017-01-03  2009-03-03  View
69806  CVE-2005-4208  Directory traversal vulnerability in Flatnuke 2.5.6 allows remote attackers to access arbitrary files via a .. (dot dot) and null byte (%00) in the id parameter of the read module.    Medium  2017-01-03  2008-09-05  View
4526  CVE-2008-4712  Directory traversal vulnerability in pages/showblog.php in LnBlog 0.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the plugin parameter.    6.8  Medium  2017-01-03  2009-01-29  View
4782  CVE-2008-4995  redirect.pl in bk2site 1.1.9 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/redirect.log temporary file. NOTE: this vulnerability is only limited to debug mode, which is disabled by default.    6.9  Medium  2017-01-03  2012-10-30  View
71342  CVE-2004-0940  Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.    6.9  Medium  2017-07-18  2017-07-10  View

Page 14767 of 17672, showing 5 records out of 88360 total, starting on record 73831, ending on 73835

Actions