NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2022  CVE-2008-2087  SQL injection vulnerability in search_result.php in Softbiz Web Host Directory Script, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the host_id parameter, a different vector than CVE-2005-3817.    6.8  Medium  2017-01-03  2009-01-29  View
68070  CVE-2005-2378  Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTOMIZE or (2) desformat parameters to rwservlet. NOTE: vector 2 is probably the same as CVE-2006-0289, and fixed in Jan 2006 CPU.    Medium  2017-07-18  2017-07-10  View
3302  CVE-2008-3421  Multiple cross-site request forgery (CSRF) vulnerabilities in Blackboard Academic Suite 8.0.260.7 allow remote attackers to hijack the authentication of student users for requests that change configuration and enrollments via unspecified input to (1) update_module.jsp, (2) enroll_course.pl, and (3) unenroll.jsp.    4.3  Medium  2017-01-03  2009-04-02  View
69094  CVE-2005-3433  Buffer overflow in Mirabilis ICQ 2003a allows user-assisted attackers to execute arbitrary code by convincing a user to enter long strings into the First Name and Last Name fields.    5.1  Medium  2017-01-03  2016-10-17  View
69350  CVE-2005-3712  Heap-based buffer overflow in rsync in Mac OS X 10.4 through 10.4.5 allows remote authenticated users to execute arbitrary code via long extended attributes.    6.5  Medium  2017-07-18  2017-07-10  View

Page 16755 of 17672, showing 5 records out of 88360 total, starting on record 83771, ending on 83775

Actions