NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67035  CVE-2005-1296  include.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.    7.5  High  2017-01-03  2016-10-17  View
1755  CVE-2008-1815  Unspecified vulnerability in the Change Data Capture component in Oracle Database 10.1.0.5, 10.2.0.3, and 11.1.0.6 has unknown impact and remote authenticated attack vectors related to DBMS_CDC_UTILITY, aka DB02. NOTE: the previous information was obtained from the April 2008 CPU. Oracle has not commented on reliable researcher claims that DB02 is for SQL injection in LOCK_CHANGE_SET.    5.5  Medium  2017-01-03  2012-10-22  View
67291  CVE-2005-1564  post_bug.cgi in Bugzilla 2.10 through 2.18, 2.19.1, and 2.19.2 allows remote authenticated users to "enter bugs into products that are closed for bug entry" by modifying the URL to specify the name of the product.    7.5  High  2017-07-18  2017-07-10  View
2011  CVE-2008-2076  Directory traversal vulnerability in admin.php in ActualScripts ActualAnalyzer Lite 2.78 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the style parameter.    7.5  High  2017-01-03  2012-10-29  View
67547  CVE-2005-1823  Multiple cross-site scripting (XSS) vulnerabilities in Qualiteam X-Cart 4.0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) cat or (2) printable parameter to home.php, (3) productid or (4) mode parameter to product.php, (5) id parameter to error_message.php, (6) section parameter to help.php, (7) mode parameter to orders.php, (8) mode parameter to register.php, (9) mode parameter to search.php, or the (10) gcid or (11) gcindex parameter to giftcert.php.    4.3  Medium  2017-07-18  2017-07-10  View

Page 15158 of 17672, showing 5 records out of 88360 total, starting on record 75786, ending on 75790

Actions