NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1743 | CVE-2008-1803 | Integer signedness error in the xrealloc function (rdesktop.c) in RDesktop 1.5.0 allows remote attackers to execute arbitrary code via unknown parameters that trigger a heap-based overflow. NOTE: the role of the channel_process function was not specified by the original researcher. | 2 | 9.3 | High | 2017-01-03 | 2011-10-11 | View | |
1999 | CVE-2008-2064 | Multiple unspecified vulnerabilities in PhpGedView before 4.1.5 have unknown impact and attack vectors related to "a fundamental design flaw in the interface (API) to connect phpGedView with external programs like content management systems." | 2 | 10 | High | 2017-01-03 | 2009-08-10 | View | |
2255 | CVE-2008-2336 | SQL injection vulnerability in category.php in 68 Classifieds 4.0.1 allows remote attackers to execute arbitrary SQL commands via the cat parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68303 | CVE-2005-2614 | Discuz! 4.0 rc4 does not properly restrict types of files that are uploaded to the server, which allows remote attackers to execute arbitrary commands via a filename containing ".php.rar" or other multiple extensions that include .php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68815 | CVE-2005-3153 | login.php in myBloggie 2.1.3 beta and earlier allows remote attackers to bypass a whitelist regular expression and conduct SQL injection attacks via a username parameter with SQL after a null character, which causes the whitelist check to succeed but injects the SQL into a query string, a different vulnerability than CVE-2005-2838. NOTE: it is possible that this is actually a bug in PHP code, in which case this should not be treated as a myBloggie vulnerability. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 15978 of 17672, showing 5 records out of 88360 total, starting on record 79886, ending on 79890