NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6900 | CVE-2008-7169 | SQL injection vulnerability in Jabode horoscope extension (com_jabode) for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a sign task to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-09-08 | View | |
72436 | CVE-2004-2059 | Multiple cross-site scripting vulnerabilities in ASPRunner 2.4 allow remote attackers inject arbitrary web script or HTML via the (1) SearchFor parameter in [TABLE-NAME]_search.asp, (2) SQL parameter in [TABLE-NAME]_edit.asp, (3) SearchFor parameter in [TABLE]_list.asp, or (4) SQL parameter in export.asp. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
7156 | CVE-2011-0017 | The open_log function in log.c in Exim 4.72 and earlier does not check the return value from (1) setuid or (2) setgid system calls, which allows local users to append log data to arbitrary files via a symlink attack. | 2 | 6.9 | Medium | 2017-01-07 | 2011-03-01 | View | |
72692 | CVE-2004-2315 | Mbedthis AppWeb HTTP server before 1.0.2 allows remote attackers to cause a denial of service (crash) via an empty OPTIONS request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
7412 | CVE-2011-0311 | The class file parser in IBM Java before 1.4.2 SR13 FP9, as used in IBM Runtimes for Java Technology 5.0.0 before SR13 and 6.0.0 before SR10, allows remote authenticated users to cause a denial of service (JVM segmentation fault, and possibly memory consumption or an infinite loop) via a crafted attribute length field in a class file, which triggers a buffer over-read. | 2 | 3.5 | Low | 2017-01-07 | 2011-10-25 | View |
Page 16518 of 17672, showing 5 records out of 88360 total, starting on record 82586, ending on 82590