NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66254 | CVE-2005-0497 | ADP Elite System Max 9000 allows remote authenticated users to gain privileges by uploading a .profile that sets the ADPROOT environment variable to the root directory. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
66766 | CVE-2005-1017 | SQL injection vulnerability in the Update_Events function in events_functions.asp in MaxWebPortal 1.33 and earlier allows remote attackers to execute arbitrary SQL commands via the EVENT_ID parameter, as demonstrated using events.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67022 | CVE-2005-1283 | Multiple directory traversal vulnerabilities in Argosoft Mail Server Pro 1.8.7.6 allow remote authenticated users to (1) read arbitrary files via the UIDL parameter to the msg script or (2) copy or move the user's .eml file to arbitrary locations via the delete script, a different vulnerability than CVE-2005-0367. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67278 | CVE-2005-1551 | Sophos Anti-Virus 3.93 does not check downloaded files for viruses when they have only been written, which creates a race condition and may allow remote attackers to bypass virus protection if the file is executed before the antivirus starts on system reboot. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
67790 | CVE-2005-2081 | Stack-based buffer overflow in the function that parses commands in Asterisk 1.0.7, when the 'write = command' option is enabled, allows remote attackers to execute arbitrary code via a command that has two double quotes followed by a tab character. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17242 of 17672, showing 5 records out of 88360 total, starting on record 86206, ending on 86210