NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68986 | CVE-2005-3324 | SQL injection vulnerability in chat.php in MWChat 6.8 allows remote attackers to execute arbitrary SQL commands via the username parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70778 | CVE-2004-0327 | Directory traversal vulnerability in functions.php in PhpNewsManager 1.46 allows remote attackers to retrieve arbitrary files via .. (dot dot) sequences in the clang parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
71034 | CVE-2004-0607 | The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71290 | CVE-2004-0884 | The (1) libsasl and (2) libsasl2 libraries in Cyrus-SASL 2.1.18 and earlier trust the SASL_PATH environment variable to find all available SASL plug-ins, which allows local users to execute arbitrary code by modifying the SASL_PATH to point to malicious programs. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
71802 | CVE-2004-1423 | Multiple PHP remote file inclusion vulnerabilities in Sean Proctor PHP-Calendar before 0.10.1, as used in Commonwealth of Massachusetts Virtual Law Office (VLO) and other products, allow remote attackers to execute arbitrary PHP code via a URL in the phpc_root_path parameter to (1) includes/calendar.php or (2) includes/setup.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16953 of 17672, showing 5 records out of 88360 total, starting on record 84761, ending on 84765