NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2544  CVE-2008-2638  Static code injection vulnerability in guestbook.php in 1Book 1.0.1 and earlier allows remote attackers to upload arbitrary PHP code via the message parameter in an HTML webform, which is written to data.php.    10  High  2017-01-03  2011-03-07  View
3568  CVE-2008-3703  The management console in the Volume Manager Scheduler Service (aka VxSchedService.exe) in Symantec Veritas Storage Foundation for Windows (SFW) 5.0, 5.0 RP1a, and 5.1 accepts NULL NTLMSSP authentication, which allows remote attackers to execute arbitrary code via requests to the service socket that create "snapshots schedules" registry values specifying future command execution. NOTE: this issue exists because of an incomplete fix for CVE-2007-2279.    10  High  2017-01-03  2011-03-07  View
69104  CVE-2005-3443  Unspecified vulnerability in the Spatial component in Oracle Database Server from 9i up to 10.1.0.3 has unknown impact and attack vectors, aka Oracle Vuln# DB17.    10  High  2017-01-03  2012-10-22  View
4080  CVE-2008-4226  Integer overflow in the xmlSAX2Characters function in libxml2 2.7.2 allows context-dependent attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a large XML document.    10  High  2017-01-03  2011-03-07  View
71664  CVE-2004-1284  Buffer overflow in the find_next_file function in playlist.c for mpg123 0.59r allows remote attackers to execute arbitrary code via a crafted MP3 playlist.    10  High  2017-07-18  2017-07-10  View

Page 1674 of 17672, showing 5 records out of 88360 total, starting on record 8366, ending on 8370

Actions