NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69552 | CVE-2005-3914 | Multiple SQL injection vulnerabilities in AFFcommerce 1.1.4 allow remote attackers to execute arbitrary SQL commands via (1) the cl parameter to SubCategory.php and the item_id parameter in (2) ItemInfo.php and (3) ItemReview.php. | 2 | 6.4 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 69808 | CVE-2005-4210 | Opera before 8.51, when running on Windows with Input Method Editor (IME) installed, allows remote attackers to cause a denial of service (persistent application crash) by bookmarking a site with a long title. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 4784 | CVE-2008-4997 | ** DISPUTED ** dfxml-invoice in datafreedom-perl 0.1.7 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/zenity temporary file. NOTE: the vendor disputes this vulnerability, stating that the vector is solely "an EXAMPLE used in the manpage." | 2 | 6.9 | Medium | 2017-01-03 | 2008-11-10 | View | |
| 70320 | CVE-2005-4731 | The Next action in PEAR HTML_QuickForm_Controller 1.0.4 includes the SID in the URL even when session.use_only_cookies is configured, which allows remote attackers to obtain the SID via an HTTP Referer field and possibly other vectors. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 70576 | CVE-2004-0112 | The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an out-of-bounds read. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 14838 of 17672, showing 5 records out of 88360 total, starting on record 74186, ending on 74190