NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70615 | CVE-2004-0158 | Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable to (1) editor.c, (2) theme.c, (3) manager.c, (4) config.c, (5) game.c, (6) levels.c, or (7) main.c. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
5335 | CVE-2008-5586 | SQL injection vulnerability in findoffice.php in Check Up New Generation (aka Check New) 4.52, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the search parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
5591 | CVE-2008-5860 | Directory traversal vulnerability in backend/template.php in Constructr CMS 3.02.5 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to create or read arbitrary files via directory traversal sequences in the edit_file parameter. | 2 | 5.1 | Medium | 2017-01-03 | 2009-01-29 | View | |
71895 | CVE-2004-1516 | CRLF injection vulnerability in index.php in phpWebSite 0.9.3-4 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the block_username parameter in the user module. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6615 | CVE-2008-6884 | Multiple directory traversal vulnerabilities in XOOPS 2.3.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsConfig[language] parameter to (1) blocks.php and (2) main.php in xoops_lib/modules/protector/. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-03 | View |
Page 16220 of 17672, showing 5 records out of 88360 total, starting on record 81096, ending on 81100