NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6400 | CVE-2008-6669 | viewrq.php in nweb2fax 0.2.7 and earlier allows remote attackers to execute arbitrary code via shell metacharacters in the var_filename parameter in a (1) tif or (2) pdf format action. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
6912 | CVE-2008-7181 | Butterfly Organizer 2.0.0 allows remote attackers to (1) delete arbitrary categories via a modified tablehere parameter to category-delete.php with the is_js_confirmed parameter set to 1, or (2) delete arbitrary accounts via the mytable parameter to delete.php. | 2 | 7.5 | High | 2017-01-03 | 2009-09-09 | View | |
72448 | CVE-2004-2071 | Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authentication in the web interface via an HTTP GET request with two slashes ("//") after the server name. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
73216 | CVE-2003-0069 | The PuTTY terminal emulator 0.53 allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user"s terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
73984 | CVE-2003-0896 | The loadClass method of the sun.applet.AppletClassLoader class in the Java Virtual Machine (JVM) in Sun SDK and JRE 1.4.1_03 and earlier allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a loaded class name that contains "/" (slash) instead of "." (dot) characters, which bypasses a call to the Security Manager"s checkPackageAccess method. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 1935 of 17672, showing 5 records out of 88360 total, starting on record 9671, ending on 9675