NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3627  CVE-2008-3762  SQL injection vulnerability in onlinestatus_html.php in Turnkey PHP Live Helper 2.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the dep parameter, related to lack of input sanitization in the get function in global.php.    7.5  High  2017-01-03  2009-01-29  View
69163  CVE-2005-3502  attachment_send.php in Cerberus Helpdesk allows remote attackers to view attachments and tickets of other users via a modified file_id parameter.    Medium  2017-01-03  2016-10-17  View
3883  CVE-2008-4023  Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, which allows remote attackers to execute arbitrary code via a crafted request, aka "Active Directory Overflow Vulnerability."    10  High  2017-01-03  2011-03-07  View
4139  CVE-2008-4311  The default configuration of system.conf in D-Bus (aka DBus) before 1.2.6 omits the send_type attribute in certain rules, which allows local users to bypass intended access restrictions by (1) sending messages, related to send_requested_reply; and possibly (2) receiving messages, related to receive_requested_reply.    4.6  Medium  2017-01-03  2014-05-05  View
69675  CVE-2005-4037  SQL injection vulnerability in functions.php in Web4Future Affiliate Manager PRO 4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter.    7.5  High  2017-01-03  2011-03-07  View

Page 1898 of 17672, showing 5 records out of 88360 total, starting on record 9486, ending on 9490

Actions