NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71958 | CVE-2004-1579 | index.php in CubeCart 2.0.1 allows remote attackers to gain sensitive information via an HTTP request with an invalid cat_id parameter, which reveals the full path in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6678 | CVE-2008-6947 | Collabtive 0.4.8 allows remote attackers to bypass authentication and create new users, including administrators, via unspecified vectors associated with the added mode in a users action to admin.php. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
72214 | CVE-2004-1836 | SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to execute arbitrary SQL via the id parameter of the comments action. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
6934 | CVE-2008-7203 | Valve Software Half-Life Counter-Strike 1.6 allows remote attackers to cause a denial of service (crash) via multiple crafted login packets. | 2 | 5 | Medium | 2017-01-03 | 2009-09-11 | View | |
72470 | CVE-2004-2093 | Buffer overflow in the open_socket_out function in socket.c for rsync 2.5.7 and earlier allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long RSYNC_PROXY environment variable. NOTE: since rsync is not setuid, this issue does not provide any additional privileges beyond those that are already available to the user. Therefore this issue may be REJECTED in the future. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1855 of 17672, showing 5 records out of 88360 total, starting on record 9271, ending on 9275