NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67852  CVE-2005-2148  Cacti 0.8.6e and earlier does not perform proper input validation to protect against common attacks, which allows remote attackers to execute arbitrary commands or SQL by sending a legitimate value in a POST request or cookie, then specifying the attack string in the URL, which causes the get_request_var function to return the wrong value in the $_REQUEST variable, which is cleansed while the original malicious $_GET value remains unmodified, as demonstrated in (1) graph_image.php and (2) graph.php.    7.5  High  2017-07-18  2017-07-10  View
68108  CVE-2005-2417  Contrexx before 1.0.5 allows remote attackers to obtain sensitive information via a direct request to /config/version.xml.    Medium  2017-07-18  2017-07-10  View
70668  CVE-2004-0215  Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.    Medium  2017-07-18  2017-07-10  View
70924  CVE-2004-0488  Stack-based buffer overflow in the ssl_util_uuencode_binary function in ssl_util.c for Apache mod_ssl, when mod_ssl is configured to trust the issuing CA, may allow remote attackers to execute arbitrary code via a client certificate with a long subject DN.    7.5  High  2017-07-18  2017-07-10  View
71180  CVE-2004-0753  The BMP image processor for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted BMP file.    Medium  2017-07-18  2017-07-10  View

Page 15574 of 17672, showing 5 records out of 88360 total, starting on record 77866, ending on 77870

Actions