NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17915 | CVE-2016-1522 | Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider recursive load calls during a size check, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via a crafted Graphite smart font. | 2 | 9.3 | High | 2017-01-19 | 2016-12-05 | View | |
| 49011 | CVE-2009-1742 | code.php in PC4Arb Pc4 Uploader 9.0 and earlier makes it easier for remote attackers to conduct SQL injection attacks via crafted keyword sequences that are removed from a filter in the id parameter in a banner action, as demonstrated via the "UNIunionON" string, which is collapsed into "UNION" by the filter_sql function. | 2 | 7.5 | High | 2017-01-07 | 2009-05-21 | View | |
| 77463 | CVE-2000-1231 | code.php3 in Phorum 3.0.7 allows remote attackers to read arbitrary files in the phorum directory via the query string. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 49439 | CVE-2009-2177 | code/display.php in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to conduct directory traversal attacks and overwrite arbitrary files via a "....//" (dot dot) in the s parameter, which is collapsed into a "../" value. | 2 | 6.8 | Medium | 2017-01-07 | 2010-01-08 | View | |
| 11260 | CVE-2011-4962 | code/sitefeatures/PageCommentInterface.php in SilverStripe 2.4.x before 2.4.6 might allow remote attackers to execute arbitrary code via a crafted cookie in a user comment submission, which is not properly handled when it is deserialized. | 2 | 6.8 | Medium | 2017-01-07 | 2012-09-18 | View |
Page 2609 of 17672, showing 5 records out of 88360 total, starting on record 13041, ending on 13045