NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6221  CVE-2008-6490  function/update_xml.php in FLABER 1.1 and earlier allows remote attackers to overwrite arbitrary files by specifying the target filename in the target_file parameter. NOTE: this can be leveraged for code execution by overwriting a PHP file, as demonstrated using function/upload_file.php.    7.5  High  2017-01-03  2009-03-19  View
6733  CVE-2008-7002  PHP 5.2.5 does not enforce (a) open_basedir and (b) safe_mode_exec_dir restrictions for certain functions, which might allow local users to bypass intended access restrictions and call programs outside of the intended directory via the (1) exec, (2) system, (3) shell_exec, (4) passthru, or (5) popen functions, possibly involving pathnames such as "C:" drive notation.    7.2  High  2017-01-03  2009-08-19  View
72525  CVE-2004-2148  Unknown local vulnerability in the "change user" feature of Slava Astashonok Fprobe 1.0.5 and earlier has unknown impact and attack vectors.    7.2  High  2017-07-18  2017-07-10  View
7245  CVE-2011-0119  WebKit, as used in Apple iTunes before 10.2 on Windows, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.    7.6  High  2017-01-07  2013-11-02  View
73293  CVE-2003-0146  Multiple vulnerabilities in NetPBM 9.20 and earlier, and possibly other versions, may allow remote attackers to cause a denial of service or execute arbitrary code via maths overflow errors such as (1) integer signedness errors or (2) integer overflows, which lead to buffer overflows.    7.5  High  2017-07-18  2017-07-10  View

Page 2395 of 17672, showing 5 records out of 88360 total, starting on record 11971, ending on 11975

Actions