NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68576 | CVE-2005-2901 | Multiple Cross-site scripting (XSS) vulnerabilities in CjWeb2Mail 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) message, or (3) ip parameter to thankyou.php or (4) emsg parameter to web2mail.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
3296 | CVE-2008-3415 | Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the bit parameter, as demonstrated by an upload to avatar/ of a .jpg file containing PHP sequences. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
68832 | CVE-2005-3170 | The LDAP client on Microsoft Windows 2000 before Update Rollup 1 for SP4 accepts certificates using LDAP Secure Sockets Layer (LDAPS) even when the Certificate Authority (CA) is not trusted, which could allow attackers to trick users into believing that they are accessing a trusted site. | 2 | 5.1 | Medium | 2017-01-03 | 2008-09-05 | View | |
3552 | CVE-2008-3685 | Directory traversal vulnerability in aws_tmxn.exe in the Admin Agent service in the server in EMC Documentum ApplicationXtender Workflow, possibly 5.40 SP1 and earlier, allows remote attackers to upload arbitrary files, and execute arbitrary code, via directory traversal sequences in requests to TCP port 2606. | 2 | 10 | High | 2017-01-03 | 2009-11-20 | View | |
3808 | CVE-2008-3946 | The finger client in HP TCP/IP Services for OpenVMS 5.x allows local users to read arbitrary files via a link corresponding to a (1) .plan or (2) .project file. | 2 | 4.9 | Medium | 2017-01-03 | 2008-09-24 | View |
Page 15739 of 17672, showing 5 records out of 88360 total, starting on record 78691, ending on 78695