NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4301  CVE-2008-4478  Multiple integer overflows in dhost.exe in Novell eDirectory 8.8 before 8.8.3, and 8.73 before 8.7.3.10 ftf1, allow remote attackers to execute arbitrary code via a crafted (1) Content-Length header in a SOAP request or (2) Netware Core Protocol opcode 0x0F message, which triggers a heap-based buffer overflow.    10  High  2017-01-03  2011-03-07  View
69837  CVE-2005-4239  Cross-site scripting (XSS) vulnerability in Search/DisplayResults.php in PHP JackKnife 2.21 and earlier allows remote attackers to inject arbitrary web script or HTML via URL-encoded values in the sKeywords parameter.    4.3  Medium  2017-01-03  2011-03-07  View
4557  CVE-2008-4743  SQL injection vulnerability in index.php in QuidaScript FAQ Management Script allows remote attackers to execute arbitrary SQL commands via the catid parameter.    7.5  High  2017-01-03  2009-02-05  View
70093  CVE-2005-4495  ** DISPUTED ** SQL injection vulnerability in index.cfm in SpireMedia mx7 allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: the vendor has disputed this issue, stating "This information is incorrect, unproven, and potentially slanderous." However, CVE and OSVDB have both performed additional research that suggests that this might be path disclosure from invalid SQL syntax.    7.5  High  2017-01-03  2011-08-08  View
4813  CVE-2008-5026  Microsoft SharePoint uses URLs with the same hostname and port number for a web site"s primary files and individual users" uploaded files (aka attachments), which allows remote authenticated users to leverage same-origin relationships and conduct cross-site scripting (XSS) attacks by uploading HTML documents.    3.5  Low  2017-01-03  2010-03-01  View

Page 15721 of 17672, showing 5 records out of 88360 total, starting on record 78601, ending on 78605

Actions