NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1293  CVE-2008-1334  cgi/b on the BT Home Hub router allows remote attackers to bypass authentication, and read or modify administrative settings or make arbitrary VoIP telephone calls, by placing a character at the end of the PATH_INFO, as demonstrated by (1) %5C (encoded backslash), (2) "%" (percent), and (3) "~" (tilde). NOTE: the "/" (slash) vector is already covered by CVE-2007-5383.    7.5  High  2017-01-03  2008-10-11  View
2317  CVE-2008-2401  The Admin Server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to append to arbitrary new or existing files via the first argument to a certain file that is included by multiple unspecified ASP applications.    7.5  High  2017-01-03  2011-03-07  View
2829  CVE-2008-2935  Multiple heap-based buffer overflows in the rc4 (1) encryption (aka exsltCryptoRc4EncryptFunction) and (2) decryption (aka exsltCryptoRc4DecryptFunction) functions in crypto.c in libexslt in libxslt 1.1.8 through 1.1.24 allow context-dependent attackers to execute arbitrary code via an XML file containing a long string as "an argument in the XSL input."    7.5  High  2017-01-03  2011-03-07  View
68621  CVE-2005-2957  Stack-based buffer overflow in AVIRA Desktop for Windows 1.00.00.68 with AVPACK32.DLL 6.31.0.3, when archive scanning is enabled, allows remote attackers to execute arbitrary code via a long filename in an ACE archive.    7.5  High  2017-01-03  2016-10-17  View
69901  CVE-2005-4303  SQL injection vulnerability in index.php for ezDatabase 2.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the db_id parameter.    7.5  High  2017-01-03  2008-09-20  View

Page 2086 of 17672, showing 5 records out of 88360 total, starting on record 10426, ending on 10430

Actions