NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65737  CVE-2006-7194  PHP remote file inclusion vulnerability in modules/Mysqlfinder/MysqlfinderAdmin.php in Agora 1.4 RC1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the _SESSION[PATH_COMPOSANT] parameter.    6.8  Medium  2016-12-20  2008-09-05  View
457  CVE-2008-0479  Directory traversal vulnerability in RTE_file_browser.asp in Web Wiz NewsPad 1.02 allows remote attackers to list arbitrary directories, and .txt and .zip files, via a .....\ in the sub parameter.    Medium  2017-01-03  2009-09-16  View
65993  CVE-2005-0229  CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.    Medium  2017-07-18  2017-07-10  View
969  CVE-2008-1007  WebCore, as used in Apple Safari before 3.1, does not enforce the frame navigation policy for Java applets, which allows remote attackers to conduct cross-site scripting (XSS) attacks.    4.3  Medium  2017-01-03  2011-03-10  View
66505  CVE-2005-0755  Heap-based buffer overflow in RealPlayer 10 and earlier, Helix Player before 10.0.4, and RealOne Player v1 and v2 allows remote attackers to execute arbitrary code via a long hostname in a RAM file.    5.1  Medium  2017-01-03  2016-10-17  View

Page 15718 of 17672, showing 5 records out of 88360 total, starting on record 78586, ending on 78590

Actions