NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78070 | CVE-2001-0605 | Headlight Software MyGetright prior to 1.0b allows a remote attacker to upload and/or overwrite arbitrary files via a malicious .dld (skins-data) file which contains long strings of random data. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
78326 | CVE-2001-0889 | Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell metacharacters. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View | |
13046 | CVE-2010-1522 | Multiple SQL injection vulnerabilities in the BookLibrary Basic (com_booklibrary) component 1.5.3 before 1.5.3_2010_06_20 for Joomla! allow remote attackers to execute arbitrary SQL commands via the bid[] parameter in a (1) lend_request or (2) save_lend_request action to index.php, the id parameter in a (3) mdownload or (4) downitsf action to index.php, or (5) the searchtext parameter in a search action to index.php. | 2 | 7.5 | High | 2017-01-18 | 2010-07-08 | View | |
78582 | CVE-2001-1147 | The PAM implementation in /bin/login of the util-linux package before 2.11 causes a password entry to be rewritten across multiple PAM calls, which could provide the credentials of one user to a different user, when used in certain PAM modules such as pam_limits. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View | |
78838 | CVE-2001-1404 | Bugzilla before 2.14 stores user passwords in plaintext and sends password requests in an email message, which could allow attackers to gain privileges. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View |
Page 17058 of 17672, showing 5 records out of 88360 total, starting on record 85286, ending on 85290