NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67413 | CVE-2005-1688 | Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
55750 | CVE-2007-3600 | WordPlugin in the wordintegration component in vtiger CRM before 5.0.3 allows remote authenticated users to bypass field level security permissions and merge arbitrary fields in an Email template, as demonstrated by the fields in the Contact module. | 2 | 4 | Medium | 2017-01-07 | 2008-11-15 | View | |
7166 | CVE-2011-0028 | WordPad in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly parse fields in Word documents, which allows remote attackers to execute arbitrary code via a crafted .doc file, aka "WordPad Converter Parsing Vulnerability." | 2 | 9.3 | High | 2017-01-07 | 2011-10-04 | View | |
100 | CVE-2008-0109 | Word in Microsoft Office 2000 SP3, XP SP3, Office 2003 SP2, and Office Word Viewer 2003 allows remote attackers to execute arbitrary code via crafted fields within the File Information Block (FIB) of a Word file, which triggers length calculation errors and memory corruption. | 2 | 9.3 | High | 2017-01-03 | 2011-03-10 | View | |
53408 | CVE-2007-1202 | Word (or Word Viewer) in Microsoft Office 2000 SP3, XP SP3, 2003 SP2, 2004 for Mac, and Works Suite 2004, 2005, and 2006 does not properly parse certain rich text "property strings of certain control words," which allows user-assisted remote attackers to trigger heap corruption and execute arbitrary code, aka the "Word RTF Parsing Vulnerability." | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 172 of 17672, showing 5 records out of 88360 total, starting on record 856, ending on 860