NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70652 | CVE-2004-0199 | Help and Support Center in Microsoft Windows XP and Windows Server 2003 SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code, as demonstrated using certain hcp:// URLs that access the DVD Upgrade capability (dvdupgrd.htm). | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
5372 | CVE-2008-5630 | SQL injection vulnerability in merchants/index.php in Post Affiliate Pro 3 and 3.1.4 allows remote attackers to execute arbitrary SQL commands via the umprof_status parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
6396 | CVE-2008-6665 | change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges via a crafted email parameter, possibly related to code injection. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-22 | View | |
72188 | CVE-2004-1810 | The Javascript engine in Opera 7.23 allows remote attackers to cause a denial of service (crash) by creating a new Array object with a large size value, then writing into that array. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
72700 | CVE-2004-2323 | DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to obtain sensitive information, including the SQL server username and password, via a GET request for source or configuration files such as Web.config. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17537 of 17672, showing 5 records out of 88360 total, starting on record 87681, ending on 87685