NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6685 | CVE-2008-6954 | The web interface (CobblerWeb) in Cobbler before 1.2.9 allows remote authenticated users to execute arbitrary Python code in cobblerd by editing a Cheetah kickstart template to import arbitrary Python modules. | 2 | 9 | High | 2017-01-03 | 2009-08-12 | View | |
| 72221 | CVE-2004-1843 | SQL injection vulnerability in Member Management System 2.1 allows remote attackers to execute arbitrary SQL via the ID parameter to (1) resend.asp or (2) news_view.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 6941 | CVE-2008-7210 | directory.php in AJchat 0.10 allows remote attackers to bypass input validation and conduct SQL injection attacks via a numeric parameter with a value matching the s parameter"s hash value, which prevents the associated $_GET["s"] variable from being unset. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in AJChat. | 2 | 7.5 | High | 2017-01-03 | 2009-09-14 | View | |
| 72477 | CVE-2004-2100 | GeoHttpServer, when configured to authenticate users, allows remote attackers to bypass authentication and access unauthorized files via a URL that contains %0a%0a (encoded newlines). | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
| 7197 | CVE-2011-0062 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.14 and Thunderbird 3.1.x before 3.1.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. | 2 | 10 | High | 2017-01-07 | 2017-01-06 | View |
Page 1979 of 17672, showing 5 records out of 88360 total, starting on record 9891, ending on 9895