NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2810 | CVE-2008-2916 | Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to showcategory.php and the (2) id parameter to software-description.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
68346 | CVE-2005-2657 | Unknown vulnerability in common-lisp-controller 4.18 and earlier allows local users to gain privileges by compiling arbitrary code in the cache directory, which is executed by another user if the user has not run Common Lisp before. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
68858 | CVE-2005-3196 | Planet Technology Corp FGSW2402RS switch with firmware 1.2 has a default password, which allows attackers with physical access to the device"s serial port to gain privileges. | 2 | 4.6 | Medium | 2017-01-03 | 2016-10-17 | View | |
3834 | CVE-2008-3972 | pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card"s label matches the "OpenSC" string, which might allow physically proximate attackers to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235. | 2 | 6.6 | Medium | 2017-01-03 | 2009-03-25 | View | |
69882 | CVE-2005-4284 | Cross-site scripting (XSS) vulnerability in StaticStore Search Engine 1.189A and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to search.cgi, possibly the keywords parameter. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 17466 of 17672, showing 5 records out of 88360 total, starting on record 87326, ending on 87330