NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67821 | CVE-2005-2112 | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.0.11 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) order parameter to edit.php or (2) cid parameter to comment_edit.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
2541 | CVE-2008-2635 | Multiple directory traversal vulnerabilities in BitKinex 2.9.3 allow remote FTP and WebDAV servers to create or overwrite arbitrary files via a .. (dot dot) in (1) a response to a LIST command from the BitKinex FTP client and (2) a response to a PROPFIND command from the BitKinex WebDAV client. NOTE: this can be leveraged for code execution by writing to a Startup folder. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
68077 | CVE-2005-2385 | Buffer overflow in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to execute arbitrary code via an ACE archive containing a long filename. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2797 | CVE-2008-2903 | SQL injection vulnerability in news.php in Advanced Webhost Billing System (AWBS) 2.3.3 through 2.7.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the viewnews parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-08 | View | |
68333 | CVE-2005-2644 | Buffer overflow in JaguarEditControl.dll in Isemarket JaguarControl allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Jtext field. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16528 of 17672, showing 5 records out of 88360 total, starting on record 82636, ending on 82640