NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5885  CVE-2008-6154  SQL injection vulnerability in index.php in Hispah Text Links Ads 1.1 allows remote attackers to execute arbitrary SQL commands via the idcat parameter.    7.5  High  2017-01-03  2009-08-20  View
71421  CVE-2004-1020  The addslashes function in PHP 4.3.9 does not properly escape a NULL (/0) character, which may allow remote attackers to read arbitrary files in PHP applications that contain a directory traversal vulnerability in require or include statements, but are otherwise protected by the magic_quotes_gpc mechanism. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision is in active dispute. This candidate may change significantly in the future as a result of further discussion.    Medium  2017-07-18  2017-07-10  View
6141  CVE-2008-6410  Directory traversal vulnerability in show.php in ol"bookmarks manager 0.7.5 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter.    7.5  High  2017-01-03  2009-08-19  View
71677  CVE-2004-1297  Buffer overflow in the process_font_table function in convert.c for unrtf 0.19.3 allows remote attackers to execute arbitrary code via a crafted RTF file.    10  High  2017-07-18  2017-07-10  View
6397  CVE-2008-6666  Multiple cross-site scripting (XSS) vulnerabilities in Kronos webTA allow remote attackers to inject arbitrary web script or HTML via the description field to (1) servlet/com.threeis.webta.H710selProject and (2) servlet/com.threeis.webta.H720editProjectInfo. NOTE: BID:29610 states that the initial report was incorrect, but the reason for this conclusion is unknown.    4.3  Medium  2017-01-03  2009-04-08  View

Page 17479 of 17672, showing 5 records out of 88360 total, starting on record 87391, ending on 87395

Actions