NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1797 | CVE-2008-1857 | Multiple directory traversal vulnerabilities in viewsource.php in Make our Life Easy (Mole) 2.1.0 allow remote attackers to read arbitrary files via directory traversal sequences in the (1) dirn and (2) fname parameters. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
67333 | CVE-2005-1606 | H-Sphere Winbox 2.4.2 and 2.4.3 RC1 stores sensitive information such as username and password in plaintext in world-readable log files, which allows local users to gain privileges. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
2053 | CVE-2008-2119 | Asterisk Open Source 1.0.x and 1.2.x before 1.2.29 and Business Edition A.x.x and B.x.x before B.2.5.3, when pedantic parsing (aka pedanticsipchecking) is enabled, allows remote attackers to cause a denial of service (daemon crash) via a SIP INVITE message that lacks a From header, related to invocations of the ast_uri_decode function, and improper handling of (1) an empty const string and (2) a NULL pointer. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
67845 | CVE-2005-2141 | TCP Chat 1.0 allows remote attackers to cause a denial of service (crash) via a long string to the chat service, possibly triggering a buffer overflow. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2565 | CVE-2008-2667 | SQL injection vulnerability in the Courier Authentication Library (aka courier-authlib) before 0.60.6 on SUSE openSUSE 10.3 and 11.0, and other platforms, when MySQL and a non-Latin character set are used, allows remote attackers to execute arbitrary SQL commands via the username and unspecified other vectors. | 2 | 5.1 | Medium | 2017-01-03 | 2009-04-14 | View |
Page 188 of 17672, showing 5 records out of 88360 total, starting on record 936, ending on 940