NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69612 | CVE-2005-3974 | Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3, when running on PHP5, does not correctly enforce user privileges, which allows remote attackers to bypass the "access user profiles" permission. | 2 | 6.4 | Medium | 2017-01-03 | 2011-03-07 | View | |
4332 | CVE-2008-4509 | Unrestricted file upload vulnerability in processFiles.php in FOSS Gallery Admin and FOSS Gallery Public 1.0 beta allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the root directory. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View | |
69868 | CVE-2005-4270 | Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
4588 | CVE-2008-4774 | Cross-site scripting (XSS) vulnerability in main/main.php in QuestCMS allows remote attackers to inject arbitrary web script or HTML via the cx parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
70124 | CVE-2005-4526 | Clearswift MIMEsweeper For Web (a.k.a. WEBsweeper) 4.0 through 5.1 allows remote attackers to bypass filtering via a URL that does not include a .exe extension but returns an executable file. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 16470 of 17672, showing 5 records out of 88360 total, starting on record 82346, ending on 82350