NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69238 | CVE-2005-3578 | SQL injection vulnerability in ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to inject arbitrary SQL commands via the sug parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 3958 | CVE-2008-4100 | GNU adns 1.4 and earlier uses a fixed source port and sequential transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: the vendor reports that this is intended behavior and is compatible with the product"s intended role in a trusted environment. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-19 | View | |
| 69494 | CVE-2005-3856 | The Popular URL capability (popularurls.cpp) in Krusader 1.60.0 and 1.70.0-beta1 saves passwords in cleartext in the krusaderrc file when the user enters URLs containing passwords in the panel URL field, which might allow attackers to access other sites. | 2 | 4 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4214 | CVE-2008-4388 | The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 does not properly validate downloaded files, which allows remote attackers to execute arbitrary code via the installAppMgr method and unspecified other methods. | 2 | 9.3 | High | 2017-01-03 | 2009-05-18 | View | |
| 69750 | CVE-2005-4142 | The web interface for subscribing new users in Lyris ListManager 5.0 through 8.8b, in combination with a line wrap feature, allows remote attackers to execute arbitrary list administration commands via LFCR (%0A%0D) sequences in the pw parameter. NOTE: it is not clear whether this is a variant of a CRLF injection vulnerability. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View |
Page 2592 of 17672, showing 5 records out of 88360 total, starting on record 12956, ending on 12960