NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67303 | CVE-2005-1576 | The file download dialog in Mozilla Firefox 0.10.1 and 1.0 for Windows uses the Content-Type HTTP header to determine the file type, but saves the original file extension when "Save to Disk" is selected, which allows remote attackers to hide the real file types of downloaded files. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
2023 | CVE-2008-2088 | SQL injection vulnerability in admin/news.php in PHP Forge 3.0 beta 2 allows remote attackers to execute arbitrary SQL commands via the id parameter in the news module to admin.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
67559 | CVE-2005-1835 | NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to databases/Users.mdb. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
2279 | CVE-2008-2360 | Integer overflow in the AllocateGlyph function in the Render extension in the X server 1.4 in X.Org X11R7.3 allows context-dependent attackers to execute arbitrary code via unspecified request fields that are used to calculate a heap buffer size, which triggers a heap-based buffer overflow. | 2 | 9 | High | 2017-01-03 | 2011-03-07 | View | |
67815 | CVE-2005-2106 | Unknown vulnerability in Drupal 4.5.0 through 4.5.3, 4.6.0, and 4.6.1 allows remote attackers to execute arbitrary PHP code via a public comment or posting. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 16161 of 17672, showing 5 records out of 88360 total, starting on record 80801, ending on 80805