NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5885 | CVE-2008-6154 | SQL injection vulnerability in index.php in Hispah Text Links Ads 1.1 allows remote attackers to execute arbitrary SQL commands via the idcat parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-20 | View | |
71421 | CVE-2004-1020 | The addslashes function in PHP 4.3.9 does not properly escape a NULL (/0) character, which may allow remote attackers to read arbitrary files in PHP applications that contain a directory traversal vulnerability in require or include statements, but are otherwise protected by the magic_quotes_gpc mechanism. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision is in active dispute. This candidate may change significantly in the future as a result of further discussion. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6141 | CVE-2008-6410 | Directory traversal vulnerability in show.php in ol"bookmarks manager 0.7.5 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
71677 | CVE-2004-1297 | Buffer overflow in the process_font_table function in convert.c for unrtf 0.19.3 allows remote attackers to execute arbitrary code via a crafted RTF file. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
6397 | CVE-2008-6666 | Multiple cross-site scripting (XSS) vulnerabilities in Kronos webTA allow remote attackers to inject arbitrary web script or HTML via the description field to (1) servlet/com.threeis.webta.H710selProject and (2) servlet/com.threeis.webta.H720editProjectInfo. NOTE: BID:29610 states that the initial report was incorrect, but the reason for this conclusion is unknown. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-08 | View |
Page 17479 of 17672, showing 5 records out of 88360 total, starting on record 87391, ending on 87395