NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6120  CVE-2008-6389  SQL injection vulnerability in asadmin/default.asp in Rae Media Contact Management Software SOHO, Standard, and Enterprise allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2009-03-03  View
71656  CVE-2004-1276  IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the tmpnam function, before the files are opened by IglooFTP.    2.1  Low  2017-07-18  2017-07-10  View
6376  CVE-2008-6645  Cross-site scripting (XSS) vulnerability in Opencosmo VisualSentinel 0.7 allows remote attackers to inject arbitrary web script or HTML via the User-Agent header ($_SERVER ["HTTP_USER_AGENT"]), which is not properly handled when displaying log files.    4.3  Medium  2017-01-03  2009-08-19  View
71912  CVE-2004-1533  Buffer overflow in pop3svr.exe for DMS POP3 1.5.3.27 and earlier allows remote attackers to cause a denial of service (service crash) via a long (1) username or (2) password.    Medium  2017-07-18  2017-07-10  View
6632  CVE-2008-6901  Multiple directory traversal vulnerabilities in 2532designs 2532|Gigs 1.2.2 Stable, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter to (1) settings.php, (2) deleteuser.php, (3) mini_calendar.php, (4) manage_venues.php, and (5) manage_gigs.php, a different vector than CVE-2007-4585.    5.1  Medium  2017-01-03  2009-08-18  View

Page 16050 of 17672, showing 5 records out of 88360 total, starting on record 80246, ending on 80250

Actions