NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66172 | CVE-2005-0414 | SQL injection vulnerability in post.php for MercuryBoard 1.1.1 allows remote attackers to execute arbitrary SQL commands via a reply post action for index.php with (1) the t parameter or (2) the qu parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
66940 | CVE-2005-1191 | The Web View DLL (webvw.dll), as used in Windows Explorer on Windows 2000 systems, does not properly filter an apostrophe ("'") in the author name in a document, which allows attackers to execute arbitrary script via extra attributes when Web View constructs a mailto: link for the preview pane when the user selects the file. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67708 | CVE-2005-1996 | PHP remote file inclusion vulnerability in start.php in Bitrix Site Manager 4.0.x allows remote attackers to execute arbitrary PHP code via the _SERVER[DOCUMENT_ROOT] parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68476 | CVE-2005-2789 | BFCommand & Control Server Manager BFCC 1.22_A and earlier, and BFVCC 2.14_B and earlier, allows remote attackers to bypass authentication via (1) an unknown attack vector or (2) a NULL (0x00) as a username. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
69500 | CVE-2005-3862 | Buffer overflow in unalz before 0.53 allows remote attackers to execute arbitrary code via long file names in ALZ archives. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16962 of 17672, showing 5 records out of 88360 total, starting on record 84806, ending on 84810