NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3876 | CVE-2008-4014 | Unspecified vulnerability in the Oracle BPEL Process Manager component in Oracle Application Server allows remote authenticated users to affect confidentiality and integrity via unknown vectors. | 2 | 5.5 | Medium | 2017-01-03 | 2012-10-22 | View | |
| 4132 | CVE-2008-4304 | general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified input related to the SSL_CLIENT_CERT environment variable. NOTE: in some environments, SSL_CLIENT_CERT always has a base64-encoded string value, which may impose constraints on injection for typical shells. | 2 | 10 | High | 2017-01-03 | 2008-12-23 | View | |
| 69668 | CVE-2005-4030 | SQL injection vulnerability in Quicksilver Forums before 1.5.1 allows remote attackers to execute arbitrary SQL commands via the HTTP_USER_AGENT header. | 2 | 5.1 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 4388 | CVE-2008-4572 | GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long arguments to the CWD and LIST commands, which triggers heap corruption related to an improper free call, and possibly triggering a heap-based buffer overflow. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
| 69924 | CVE-2005-4326 | The web interface for American Power Conversion (APC) PowerChute Network Shutdown performs all communication in cleartext (base64-encoded), which allows remote attackers to sniff authentication credentials. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 2171 of 17672, showing 5 records out of 88360 total, starting on record 10851, ending on 10855