NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67462 | CVE-2005-1738 | Format string vulnerability in the logPrintBadfile function in delbadfiles.c Iron Bars SHell (ibsh) before 0.3d allows users to "access files outside the home directory" and possibly execute arbitrary code via certain inputs that are not properly handled in a syslog call. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View | |
2438 | CVE-2008-2530 | Multiple SQL injection vulnerabilities in Concepts & Solutions QuickUpCMS allow remote attackers to execute arbitrary SQL commands via the (1) nr parameter to (a) frontend/news.php, the (2) id parameter to (b) events3.php and (c) videos2.php in frontend/, the (3) y parameter to (d) frontend/events2.php, and the (4) ser parameter to (e) frontend/fotos2.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68742 | CVE-2005-3079 | PunBB before 1.2.8 allows remote attackers to perform "code inclusion" via the user language selection. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
70022 | CVE-2005-4424 | Directory traversal vulnerability in PHPKIT 1.6.1 R2 and earlier might allow remote authenticated users to execute arbitrary PHP code via a .. (dot dot) in the path parameter and a %00 at the end of the filename, as demonstrated by an avatar filename ending with .png%00. | 2 | 6.5 | Medium | 2017-01-03 | 2008-09-05 | View | |
70278 | CVE-2005-4689 | Six Apart Movable Type 3.16 stores account names and password hashes in a cookie, which allows remote attackers to login to an account by sniffing the cookie. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 16872 of 17672, showing 5 records out of 88360 total, starting on record 84356, ending on 84360