NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
7114 | CVE-2017-5345 | SQL injection vulnerability in inc/lib/Control/Ajax/tags-ajax.control.php in GeniXCMS 0.0.8 allows remote authenticated editors to execute arbitrary SQL commands via the term parameter to the default URI. | 2 | 6.5 | Medium | 2017-01-30 | 2017-01-27 | View | |
72906 | CVE-2004-2529 | Gadu-Gadu allows remote attackers to bypass the "image send" option by sending a very small image file, which could be used in conjunction with image-related vulnerabilities. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
73162 | CVE-2003-0014 | gsinterf.c in bmv 1.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
73418 | CVE-2003-0283 | Cross-site scripting (XSS) vulnerability in Phorum before 3.4.3 allows remote attackers to inject arbitrary web script and HTML tags via a message with a << before a tag name in the (1) subject, (2) author's name, or (3) author's e-mail. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
74186 | CVE-2003-1114 | The Session Initiation Protocol (SIP) implementation in Mediatrix Telecom VoIP Access Devices and Gateways running SIPv2.4 and SIPv4.3 firmware allows remote attackers to cause a denial of service or execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 1787 of 17672, showing 5 records out of 88360 total, starting on record 8931, ending on 8935