NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70615  CVE-2004-0158  Buffer overflow in lbreakout2 allows local users to gain 'games' group privileges via a large HOME environment variable to (1) editor.c, (2) theme.c, (3) manager.c, (4) config.c, (5) game.c, (6) levels.c, or (7) main.c.    4.6  Medium  2017-07-18  2017-07-10  View
5335  CVE-2008-5586  SQL injection vulnerability in findoffice.php in Check Up New Generation (aka Check New) 4.52, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the search parameter.    6.8  Medium  2017-01-03  2009-01-29  View
5591  CVE-2008-5860  Directory traversal vulnerability in backend/template.php in Constructr CMS 3.02.5 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to create or read arbitrary files via directory traversal sequences in the edit_file parameter.    5.1  Medium  2017-01-03  2009-01-29  View
71895  CVE-2004-1516  CRLF injection vulnerability in index.php in phpWebSite 0.9.3-4 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the block_username parameter in the user module.    Medium  2017-07-18  2017-07-10  View
6615  CVE-2008-6884  Multiple directory traversal vulnerabilities in XOOPS 2.3.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsConfig[language] parameter to (1) blocks.php and (2) main.php in xoops_lib/modules/protector/.    6.8  Medium  2017-01-03  2009-08-03  View

Page 16220 of 17672, showing 5 records out of 88360 total, starting on record 81096, ending on 81100

Actions