NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69238  CVE-2005-3578  SQL injection vulnerability in ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to inject arbitrary SQL commands via the sug parameter.    7.5  High  2017-01-03  2008-09-05  View
3958  CVE-2008-4100  GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product"s intended role in a trusted environment.    6.4  Medium  2017-01-03  2008-09-19  View
69494  CVE-2005-3856  The Popular URL capability (popularurls.cpp) in Krusader 1.60.0 and 1.70.0-beta1 saves passwords in cleartext in the krusaderrc file when the user enters URLs containing passwords in the panel URL field, which might allow attackers to access other sites.    Medium  2017-01-03  2008-09-05  View
4214  CVE-2008-4388  The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 does not properly validate downloaded files, which allows remote attackers to execute arbitrary code via the installAppMgr method and unspecified other methods.    9.3  High  2017-01-03  2009-05-18  View
69750  CVE-2005-4142  The web interface for subscribing new users in Lyris ListManager 5.0 through 8.8b, in combination with a line wrap feature, allows remote attackers to execute arbitrary list administration commands via LFCR (%0A%0D) sequences in the pw parameter. NOTE: it is not clear whether this is a variant of a CRLF injection vulnerability.    7.5  High  2017-01-03  2011-03-07  View

Page 2592 of 17672, showing 5 records out of 88360 total, starting on record 12956, ending on 12960

Actions