NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5919 | CVE-2008-6188 | SQL injection vulnerability in people/editprofile.php in Gforge 4.6 rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the skill_edit[] parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
| 71455 | CVE-2004-1063 | PHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multithreaded Unix webserver, allows local users to bypass safe_mode_exec_dir restrictions and execute commands outside of the intended safe_mode_exec_dir via shell metacharacters in the current directory name. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision is in active dispute. This candidate may change significantly in the future as a result of further discussion. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
| 6175 | CVE-2008-6444 | Stack-based buffer overflow in CSTransfer.dll in Baidu Hi IM might allow remote attackers to execute arbitrary code via a crafted packet, probably related to an improper length value. | 2 | 10 | High | 2017-01-03 | 2009-08-19 | View | |
| 71711 | CVE-2004-1331 | The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Security Warning" dialog and save arbitrary files with arbitrary extensions via the SaveAs command. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 6431 | CVE-2008-6700 | Multiple cross-site scripting (XSS) vulnerabilities in Butterfly Organizer 2.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) mytable parameter to view.php, (2) mytable parameter to viewdb2.php, (3) tablehere parameter to category-rename.php, and (4) letter parameter to module-contacts.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-13 | View |
Page 2464 of 17672, showing 5 records out of 88360 total, starting on record 12316, ending on 12320