NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72186  CVE-2004-1808  Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack.    2.1  Low  2017-07-18  2017-07-10  View
6906  CVE-2008-7175  Cross-site scripting (XSS) vulnerability in wp-admin/admin.php in NextGEN Gallery 0.96 and earlier plugin for Wordpress allows remote attackers to inject arbitrary web script or HTML via the picture description field in a page edit action.    4.3  Medium  2017-01-03  2009-10-05  View
72442  CVE-2004-2065  DansGuardian 2.8 and earlier allows remote attackers to bypass the extension filtering rule via a hex encoded extension or . in the filename.    7.5  High  2017-07-18  2017-07-10  View
7162  CVE-2011-0024  Heap-based buffer overflow in wiretap/pcapng.c in Wireshark before 1.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted capture file.    9.3  High  2017-01-07  2011-03-29  View
72698  CVE-2004-2321  BEA WebLogic Server and Express 8.1 SP1 and earlier allows local users in the Operator role to obtain administrator passwords via MBean attributes, including (1) ServerStartMBean.Password and (2) NodeManagerMBean.CertificatePassword.    2.1  Low  2017-07-18  2017-07-10  View

Page 16926 of 17672, showing 5 records out of 88360 total, starting on record 84626, ending on 84630

Actions