NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2540 | CVE-2008-2634 | SQL injection vulnerability in index.asp in I-Pos Internet Pay Online Store 1.3 Beta and earlier allows remote attackers to execute arbitrary SQL commands via the item parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68076 | CVE-2005-2384 | Directory traversal vulnerability in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to write arbitrary files via an ACE archive containing filenames with (1) .. or (2) absolute pathnames. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2796 | CVE-2008-2902 | SQL injection vulnerability in profile.php in AlstraSoft AskMe Pro 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: The que_id parameter to forum_answer.php is already covered by CVE-2007-4085. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
68332 | CVE-2005-2643 | Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor servers to obtain the keys that a client uses for other systems in the circuit. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
3052 | CVE-2008-3168 | The files utility in Empire Server before 4.3.15 discloses the world creation time, which makes it easier for attackers to determine the PRNG seed. | 2 | 5 | Medium | 2017-01-03 | 2009-06-09 | View |
Page 16317 of 17672, showing 5 records out of 88360 total, starting on record 81581, ending on 81585