NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1293 | CVE-2008-1334 | cgi/b on the BT Home Hub router allows remote attackers to bypass authentication, and read or modify administrative settings or make arbitrary VoIP telephone calls, by placing a character at the end of the PATH_INFO, as demonstrated by (1) %5C (encoded backslash), (2) "%" (percent), and (3) "~" (tilde). NOTE: the "/" (slash) vector is already covered by CVE-2007-5383. | 2 | 7.5 | High | 2017-01-03 | 2008-10-11 | View | |
| 2317 | CVE-2008-2401 | The Admin Server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to append to arbitrary new or existing files via the first argument to a certain file that is included by multiple unspecified ASP applications. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 2829 | CVE-2008-2935 | Multiple heap-based buffer overflows in the rc4 (1) encryption (aka exsltCryptoRc4EncryptFunction) and (2) decryption (aka exsltCryptoRc4DecryptFunction) functions in crypto.c in libexslt in libxslt 1.1.8 through 1.1.24 allow context-dependent attackers to execute arbitrary code via an XML file containing a long string as "an argument in the XSL input." | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 68621 | CVE-2005-2957 | Stack-based buffer overflow in AVIRA Desktop for Windows 1.00.00.68 with AVPACK32.DLL 6.31.0.3, when archive scanning is enabled, allows remote attackers to execute arbitrary code via a long filename in an ACE archive. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 69901 | CVE-2005-4303 | SQL injection vulnerability in index.php for ezDatabase 2.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the db_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-20 | View |
Page 2086 of 17672, showing 5 records out of 88360 total, starting on record 10426, ending on 10430