NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
637  CVE-2008-0664  The XML-RPC implementation (xmlrpc.php) in WordPress before 2.3.3, when registration is enabled, allows remote attackers to edit posts of other blog users via unknown vectors.    6.4  Medium  2017-01-03  2011-03-07  View
893  CVE-2008-0923  Directory traversal vulnerability in the Shared Folders feature for VMWare ACE 1.0.2 and 2.0.2, Player 1.0.4 and 2.0.2, and Workstation 5.5.4 and 6.0.2 allows guest OS users to read and write arbitrary files on the host OS via a multibyte string that produces a wide character string containing .. (dot dot) sequences, which bypasses the protection mechanism, as demonstrated using a "%c0%2e%c0%2e" string.    6.9  Medium  2017-01-03  2011-03-07  View
66429  CVE-2005-0678  PHP remote file inclusion vulnerability in formmail.inc.php for Form Mail Script 2.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the script_root to reference a URL on a remote web server that contains the code.    7.5  High  2017-01-03  2016-10-17  View
1149  CVE-2008-1189  Buffer overflow in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, 5.0 Update 14 and earlier, and SDK/JRE 1.4.2_16 and earlier allows remote attackers to execute arbitrary code via unknown vectors, a different issue than CVE-2008-1188, aka the "third" issue.    6.8  Medium  2017-01-03  2011-03-07  View
66685  CVE-2005-0935  Multiple SQL injection vulnerabilities in ESMI PayPal Storefront allow remote attackers to execute arbitrary SQL commands via the (1) idpages parameter to pages.php or the (2) id2 parameter to products1.php.    7.5  High  2017-01-03  2016-10-17  View

Page 15008 of 17672, showing 5 records out of 88360 total, starting on record 75036, ending on 75040

Actions