NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2022 | CVE-2008-2087 | SQL injection vulnerability in search_result.php in Softbiz Web Host Directory Script, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the host_id parameter, a different vector than CVE-2005-3817. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
68070 | CVE-2005-2378 | Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTOMIZE or (2) desformat parameters to rwservlet. NOTE: vector 2 is probably the same as CVE-2006-0289, and fixed in Jan 2006 CPU. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
3302 | CVE-2008-3421 | Multiple cross-site request forgery (CSRF) vulnerabilities in Blackboard Academic Suite 8.0.260.7 allow remote attackers to hijack the authentication of student users for requests that change configuration and enrollments via unspecified input to (1) update_module.jsp, (2) enroll_course.pl, and (3) unenroll.jsp. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
69094 | CVE-2005-3433 | Buffer overflow in Mirabilis ICQ 2003a allows user-assisted attackers to execute arbitrary code by convincing a user to enter long strings into the First Name and Last Name fields. | 2 | 5.1 | Medium | 2017-01-03 | 2016-10-17 | View | |
69350 | CVE-2005-3712 | Heap-based buffer overflow in rsync in Mac OS X 10.4 through 10.4.5 allows remote authenticated users to execute arbitrary code via long extended attributes. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16755 of 17672, showing 5 records out of 88360 total, starting on record 83771, ending on 83775