NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3876  CVE-2008-4014  Unspecified vulnerability in the Oracle BPEL Process Manager component in Oracle Application Server allows remote authenticated users to affect confidentiality and integrity via unknown vectors.    5.5  Medium  2017-01-03  2012-10-22  View
4132  CVE-2008-4304  general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified input related to the SSL_CLIENT_CERT environment variable. NOTE: in some environments, SSL_CLIENT_CERT always has a base64-encoded string value, which may impose constraints on injection for typical shells.    10  High  2017-01-03  2008-12-23  View
69668  CVE-2005-4030  SQL injection vulnerability in Quicksilver Forums before 1.5.1 allows remote attackers to execute arbitrary SQL commands via the HTTP_USER_AGENT header.    5.1  Medium  2017-01-03  2011-03-07  View
4388  CVE-2008-4572  GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long arguments to the CWD and LIST commands, which triggers heap corruption related to an improper free call, and possibly triggering a heap-based buffer overflow.    10  High  2017-01-03  2011-03-07  View
69924  CVE-2005-4326  The web interface for American Power Conversion (APC) PowerChute Network Shutdown performs all communication in cleartext (base64-encoded), which allows remote attackers to sniff authentication credentials.    Medium  2017-01-03  2008-09-05  View

Page 2171 of 17672, showing 5 records out of 88360 total, starting on record 10851, ending on 10855

Actions