NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67852 | CVE-2005-2148 | Cacti 0.8.6e and earlier does not perform proper input validation to protect against common attacks, which allows remote attackers to execute arbitrary commands or SQL by sending a legitimate value in a POST request or cookie, then specifying the attack string in the URL, which causes the get_request_var function to return the wrong value in the $_REQUEST variable, which is cleansed while the original malicious $_GET value remains unmodified, as demonstrated in (1) graph_image.php and (2) graph.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 68108 | CVE-2005-2417 | Contrexx before 1.0.5 allows remote attackers to obtain sensitive information via a direct request to /config/version.xml. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 70668 | CVE-2004-0215 | Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 70924 | CVE-2004-0488 | Stack-based buffer overflow in the ssl_util_uuencode_binary function in ssl_util.c for Apache mod_ssl, when mod_ssl is configured to trust the issuing CA, may allow remote attackers to execute arbitrary code via a client certificate with a long subject DN. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 71180 | CVE-2004-0753 | The BMP image processor for (1) gdk-pixbuf before 0.22 and (2) gtk2 before 2.2.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted BMP file. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15574 of 17672, showing 5 records out of 88360 total, starting on record 77866, ending on 77870