NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69612  CVE-2005-3974  Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3, when running on PHP5, does not correctly enforce user privileges, which allows remote attackers to bypass the "access user profiles" permission.    6.4  Medium  2017-01-03  2011-03-07  View
4332  CVE-2008-4509  Unrestricted file upload vulnerability in processFiles.php in FOSS Gallery Admin and FOSS Gallery Public 1.0 beta allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the root directory.    10  High  2017-01-03  2009-01-29  View
69868  CVE-2005-4270  Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.    7.5  High  2017-01-03  2011-03-07  View
4588  CVE-2008-4774  Cross-site scripting (XSS) vulnerability in main/main.php in QuestCMS allows remote attackers to inject arbitrary web script or HTML via the cx parameter.    4.3  Medium  2017-01-03  2009-01-29  View
70124  CVE-2005-4526  Clearswift MIMEsweeper For Web (a.k.a. WEBsweeper) 4.0 through 5.1 allows remote attackers to bypass filtering via a URL that does not include a .exe extension but returns an executable file.    Medium  2017-01-03  2008-09-05  View

Page 16470 of 17672, showing 5 records out of 88360 total, starting on record 82346, ending on 82350

Actions