NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4270 | CVE-2008-4447 | Cross-site scripting (XSS) vulnerability in actions.php in Positive Software H-Sphere WebShell 4.3.10 allows remote attackers to inject arbitrary web script or HTML via (1) the fn parameter during a dload action, (2) the mask parameter during a search action, and (3) the tab parameter during a sysinfo action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-03 | View | |
| 69806 | CVE-2005-4208 | Directory traversal vulnerability in Flatnuke 2.5.6 allows remote attackers to access arbitrary files via a .. (dot dot) and null byte (%00) in the id parameter of the read module. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4526 | CVE-2008-4712 | Directory traversal vulnerability in pages/showblog.php in LnBlog 0.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the plugin parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 4782 | CVE-2008-4995 | redirect.pl in bk2site 1.1.9 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/redirect.log temporary file. NOTE: this vulnerability is only limited to debug mode, which is disabled by default. | 2 | 6.9 | Medium | 2017-01-03 | 2012-10-30 | View | |
| 71342 | CVE-2004-0940 | Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error. | 2 | 6.9 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 14767 of 17672, showing 5 records out of 88360 total, starting on record 73831, ending on 73835