NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 637 | CVE-2008-0664 | The XML-RPC implementation (xmlrpc.php) in WordPress before 2.3.3, when registration is enabled, allows remote attackers to edit posts of other blog users via unknown vectors. | 2 | 6.4 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 893 | CVE-2008-0923 | Directory traversal vulnerability in the Shared Folders feature for VMWare ACE 1.0.2 and 2.0.2, Player 1.0.4 and 2.0.2, and Workstation 5.5.4 and 6.0.2 allows guest OS users to read and write arbitrary files on the host OS via a multibyte string that produces a wide character string containing .. (dot dot) sequences, which bypasses the protection mechanism, as demonstrated using a "%c0%2e%c0%2e" string. | 2 | 6.9 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 66429 | CVE-2005-0678 | PHP remote file inclusion vulnerability in formmail.inc.php for Form Mail Script 2.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the script_root to reference a URL on a remote web server that contains the code. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 1149 | CVE-2008-1189 | Buffer overflow in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, 5.0 Update 14 and earlier, and SDK/JRE 1.4.2_16 and earlier allows remote attackers to execute arbitrary code via unknown vectors, a different issue than CVE-2008-1188, aka the "third" issue. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 66685 | CVE-2005-0935 | Multiple SQL injection vulnerabilities in ESMI PayPal Storefront allow remote attackers to execute arbitrary SQL commands via the (1) idpages parameter to pages.php or the (2) id2 parameter to products1.php. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 15008 of 17672, showing 5 records out of 88360 total, starting on record 75036, ending on 75040