NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68326 | CVE-2005-2637 | Multiple SQL injection vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) Match or (2) CatID parameter to SearchResults.php, or (3) the password to AccessControl.php. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
3046 | CVE-2008-3162 | Stack-based buffer overflow in the str_read_packet function in libavformat/psxstr.c in FFmpeg before r13993 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted STR file that interleaves audio and video sectors. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
68582 | CVE-2005-2914 | ezconfig.asp in Linksys WRT54G router 3.01.03, 3.03.6, non-default configurations of 2.04.4, and possibly other versions, does not use an authentication initialization function, which allows remote attackers to obtain encrypted configuration information and, if the key is known, modify the configuration. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
3302 | CVE-2008-3421 | Multiple cross-site request forgery (CSRF) vulnerabilities in Blackboard Academic Suite 8.0.260.7 allow remote attackers to hijack the authentication of student users for requests that change configuration and enrollments via unspecified input to (1) update_module.jsp, (2) enroll_course.pl, and (3) unenroll.jsp. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
68838 | CVE-2005-3176 | Microsoft Windows 2000 before Update Rollup 1 for SP4 does not record the IP address of a Windows Terminal Services client in a security log event if the client connects successfully, which could make it easier for attackers to escape detection. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16102 of 17672, showing 5 records out of 88360 total, starting on record 80506, ending on 80510