NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84694 | CVE-2017-5650 | In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the handling of an HTTP/2 GOAWAY frame for a connection did not close streams associated with that connection that were currently waiting for a WINDOW_UPDATE before allowing the application to write more data. These waiting streams each consumed a thread. A malicious client could therefore construct a series of HTTP/2 requests that would consume all available processing threads. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66519 | CVE-2005-0769 | Multiple buffer overflows in OpenSLP before 1.1.5 allow remote attackers to have an unknown impact via malformed SLP packets. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67031 | CVE-2005-1292 | Multiple cross-site scripting (XSS) vulnerabilities in CartWIZ ASP Cart allow remote attackers to inject arbitrary web script or HTML via the idProduct parameter to (1) tellAFriend.asp or (2) addToWishlist.asp, redirect parameter to (3) access.asp or (4) login.asp, message parameter to (5) login.asp or (6) error.asp, or (7) sku or (8) name parameter to searchResults.asp. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
67287 | CVE-2005-1560 | The SSH module in Neteyes Nexusway allows remote attackers to execute arbitrary commands via shell metacharacters in arguments to certain commands, as demonstrated using ping and traceroute. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
68567 | CVE-2005-2892 | Directory traversal vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to read arbitrary files via ".." sequences and "%00" (trailing null byte) in the u parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17278 of 17672, showing 5 records out of 88360 total, starting on record 86386, ending on 86390