NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70652  CVE-2004-0199  Help and Support Center in Microsoft Windows XP and Windows Server 2003 SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code, as demonstrated using certain hcp:// URLs that access the DVD Upgrade capability (dvdupgrd.htm).    5.1  Medium  2017-07-18  2017-07-10  View
5372  CVE-2008-5630  SQL injection vulnerability in merchants/index.php in Post Affiliate Pro 3 and 3.1.4 allows remote attackers to execute arbitrary SQL commands via the umprof_status parameter.    6.8  Medium  2017-01-03  2011-03-07  View
6396  CVE-2008-6665  change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges via a crafted email parameter, possibly related to code injection.    6.8  Medium  2017-01-03  2009-04-22  View
72188  CVE-2004-1810  The Javascript engine in Opera 7.23 allows remote attackers to cause a denial of service (crash) by creating a new Array object with a large size value, then writing into that array.    Medium  2017-07-18  2017-07-10  View
72700  CVE-2004-2323  DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to obtain sensitive information, including the SQL server username and password, via a GET request for source or configuration files such as Web.config.    Medium  2017-07-18  2017-07-10  View

Page 17537 of 17672, showing 5 records out of 88360 total, starting on record 87681, ending on 87685

Actions