NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4597 | CVE-2008-4783 | tlAds 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tlAds_login cookie to "admin." | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
4853 | CVE-2008-5066 | PHP remote file inclusion vulnerability in upload/admin/frontpage_right.php in Agares Media ThemeSiteScript 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the loadadminpage parameter. | 2 | 10 | High | 2017-01-03 | 2009-05-14 | View | |
70389 | CVE-2005-4800 | Direct static code injection vulnerability in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allows remote authenticated administrators to inject arbitrary PHP code via the TestGallery parameter in a mod_info action to modify_gallery.php, which inserts the code into guid_info.php. NOTE: this issue is easier to exploit due to a separate CSRF vulnerability. | 2 | 9 | High | 2017-01-03 | 2008-09-05 | View | |
5109 | CVE-2008-5331 | Adobe Acrobat 9 uses more efficient encryption than previous versions, which makes it easier for attackers to guess a document"s password via a brute-force attack. | 2 | 7.5 | High | 2017-01-03 | 2008-12-05 | View | |
70645 | CVE-2004-0189 | The "%xx" URL decoding function in Squid 2.5STABLE4 and earlier allows remote attackers to bypass url_regex ACLs via a URL with a NULL ("%00") character, which causes Squid to use only a portion of the requested URL when comparing it against the access control lists. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View |
Page 17025 of 17672, showing 5 records out of 88360 total, starting on record 85121, ending on 85125