NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53504 | CVE-2007-1306 | Asterisk 1.4 before 1.4.1 and 1.2 before 1.2.16 allows remote attackers to cause a denial of service (crash) by sending a Session Initiation Protocol (SIP) packet without a URI and SIP-version header, which results in a NULL pointer dereference. | 2 | 7.8 | High | 2017-01-07 | 2011-03-07 | View | |
62985 | CVE-2006-4346 | Asterisk 1.2.10 supports the use of client-controlled variables to determine filenames in the Record function, which allows remote attackers to (1) execute code via format string specifiers or (2) overwrite files via directory traversals involving unspecified vectors, as demonstrated by the CALLERIDNAME variable. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
72982 | CVE-2004-2605 | aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
80688 | CVE-2002-1737 | Astaro Security Linux 2.016 creates world-writable files and directories, which allows local users to overwrite arbitrary files. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
54718 | CVE-2007-2554 | Associated Press (AP) Newspower 4.0.1 and earlier uses a default blank password for the MySQL root account, which allows remote attackers to insert or modify news articles via shows.tblscript. | 2 | 7.8 | High | 2017-01-07 | 2008-11-15 | View |
Page 16239 of 17672, showing 5 records out of 88360 total, starting on record 81191, ending on 81195