NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66987 | CVE-2005-1241 | Directory traversal vulnerability in the third party tool from Powertech, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 66986 | CVE-2005-1240 | Directory traversal vulnerability in the third party tool from Castlehill, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 66985 | CVE-2005-1239 | Directory traversal vulnerability in the third party tool from Raz-Lee, as used to secure the iSeries AS/400 FTP server, allows remote attackers to access arbitrary files, including those from qsys.lib, via ".." sequences in a GET request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66984 | CVE-2005-1238 | By design, the built-in FTP server for iSeries AS/400 systems does not support a restricted document root, which allows attackers to read or write arbitrary files, including sensitive QSYS databases, via a full pathname in a GET or PUT request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 66983 | CVE-2005-1237 | SQL injection vulnerability in news.php in FlexPHPNews 0.0.3 allows remote attackers to execute arbitrary SQL commands via the newsid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 15252 of 17672, showing 5 records out of 88360 total, starting on record 76256, ending on 76260