NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1951 | CVE-2008-2015 | Multiple absolute path traversal vulnerabilities in certain ActiveX controls in WatchFire AppScan 7.0 allow remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) CompactSave and (2) SaveSession method in one control, and the (3) saveRecordedExploreToFile method in a different control. NOTE: this can be leveraged for code execution by writing to a Startup folder. | 2 | 9.3 | High | 2017-01-03 | 2008-09-05 | View | |
2463 | CVE-2008-2556 | SQL injection vulnerability in read.php in PHP Visit Counter 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the datespan parameter in a read action. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68511 | CVE-2005-2836 | Multiple cross-site scripting (XSS) vulnerabilities in Phorum 5.0.17a and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the username parameter to register.php or (2) a signature of a logged-in user in "My Control Center," which is not properly handled by control.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
68767 | CVE-2005-3104 | mt-comments.cgi in Movable Type before 3.2 allows attackers to redirect users to other web sites via URLs in comments. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
69279 | CVE-2005-3641 | Oracle Databases running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication by supplying a valid username. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 17039 of 17672, showing 5 records out of 88360 total, starting on record 85191, ending on 85195