NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 71138 | CVE-2004-0711 | The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72162 | CVE-2004-1783 | Directory traversal vulnerability in Net2Soft Flash FTP Server 1.0 allows remote attackers to read and create arbitrary files via a /.. (slash dot dot). | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 72418 | CVE-2004-2041 | PHP remote file inclusion vulnerability in secure_img_render.php in e107 0.615 allows remote attackers to execute arbitrary PHP code by modifying the p parameter to reference a URL on a remote web server that contains the code. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 73442 | CVE-2003-0307 | Poster version.two allows remote authenticated users to gain administrative privileges by appending the "|" field separator and an "admin" value into the email address field. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 10466 | CVE-2011-3898 | Google Chrome before 15.0.874.120, when Java Runtime Environment (JRE) 7 is used, does not request user confirmation before applet execution begins, which allows remote attackers to have an unspecified impact via a crafted applet. | 2 | 7.5 | High | 2017-01-07 | 2012-02-16 | View |
Page 15385 of 17672, showing 5 records out of 88360 total, starting on record 76921, ending on 76925