NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71138  CVE-2004-0711  The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected.    7.5  High  2017-07-18  2017-07-10  View
72162  CVE-2004-1783  Directory traversal vulnerability in Net2Soft Flash FTP Server 1.0 allows remote attackers to read and create arbitrary files via a /.. (slash dot dot).    7.5  High  2016-12-20  2008-09-05  View
72418  CVE-2004-2041  PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote attackers to execute arbitrary PHP code by modifying the p parameter to reference a URL on a remote web server that contains the code.    7.5  High  2017-07-18  2017-07-10  View
73442  CVE-2003-0307  Poster version.two allows remote authenticated users to gain administrative privileges by appending the "|" field separator and an "admin" value into the email address field.    7.5  High  2017-01-03  2016-10-17  View
10466  CVE-2011-3898  Google Chrome before 15.0.874.120, when Java Runtime Environment (JRE) 7 is used, does not request user confirmation before applet execution begins, which allows remote attackers to have an unspecified impact via a crafted applet.    7.5  High  2017-01-07  2012-02-16  View

Page 15385 of 17672, showing 5 records out of 88360 total, starting on record 76921, ending on 76925

Actions