NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5418 | CVE-2008-5676 | Multiple unspecified vulnerabilities in the ModSecurity (aka mod_security) module 2.5.0 through 2.5.5 for the Apache HTTP Server, when SecCacheTransformations is enabled, allow remote attackers to cause a denial of service (daemon crash) or bypass the product"s functionality via unknown vectors related to "transformation caching." | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
70954 | CVE-2004-0520 | Cross-site scripting (XSS) vulnerability in mime.php for SquirrelMail before 1.4.3 allows remote attackers to insert arbitrary HTML and script via the content-type mail header, as demonstrated using read_body.php. | 2 | 6.8 | Medium | 2016-12-20 | 2016-10-17 | View | |
71210 | CVE-2004-0786 | The IPv6 URI parsing routines in the apr-util library for Apache 2.0.50 and earlier allow remote attackers to cause a denial of service (child process crash) via a certain URI, as demonstrated using the Codenomicon HTTP Test Tool. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
5930 | CVE-2008-6199 | 2532designs 2532|Gigs 1.2.2 and earlier allows remote attackers to trigger a backup and obtain sensitive information via a direct request to backup.php, which creates backup.sql under the web root with insufficient access control. | 2 | 4 | Medium | 2017-01-03 | 2009-02-20 | View | |
6186 | CVE-2008-6455 | Session fixation vulnerability in Edikon phpShop 0.8.1 allows remote attackers to hijack web sessions via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 1525 of 17672, showing 5 records out of 88360 total, starting on record 7621, ending on 7625