NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2810 | CVE-2008-2916 | Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to showcategory.php and the (2) id parameter to software-description.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
68346 | CVE-2005-2657 | Unknown vulnerability in common-lisp-controller 4.18 and earlier allows local users to gain privileges by compiling arbitrary code in the cache directory, which is executed by another user if the user has not run Common Lisp before. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
3066 | CVE-2008-3183 | PHP remote file inclusion vulnerability in ktmlpro/includes/ktedit/toolbar.php in gapicms 9.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the dirDepth parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
3322 | CVE-2008-3441 | Nullsoft Winamp before 5.24 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning. | 2 | 7.5 | High | 2017-01-03 | 2012-08-13 | View | |
68858 | CVE-2005-3196 | Planet Technology Corp FGSW2402RS switch with firmware 1.2 has a default password, which allows attackers with physical access to the device"s serial port to gain privileges. | 2 | 4.6 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 16920 of 17672, showing 5 records out of 88360 total, starting on record 84596, ending on 84600