NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17915  CVE-2016-1522  Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider recursive load calls during a size check, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly execute arbitrary code via a crafted Graphite smart font.    9.3  High  2017-01-19  2016-12-05  View
49011  CVE-2009-1742  code.php in PC4Arb Pc4 Uploader 9.0 and earlier makes it easier for remote attackers to conduct SQL injection attacks via crafted keyword sequences that are removed from a filter in the id parameter in a banner action, as demonstrated via the "UNIunionON" string, which is collapsed into "UNION" by the filter_sql function.    7.5  High  2017-01-07  2009-05-21  View
77463  CVE-2000-1231  code.php3 in Phorum 3.0.7 allows remote attackers to read arbitrary files in the phorum directory via the query string.    Medium  2017-01-05  2008-09-05  View
49439  CVE-2009-2177  code/display.php in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to conduct directory traversal attacks and overwrite arbitrary files via a "....//" (dot dot) in the s parameter, which is collapsed into a "../" value.    6.8  Medium  2017-01-07  2010-01-08  View
11260  CVE-2011-4962  code/sitefeatures/PageCommentInterface.php in SilverStripe 2.4.x before 2.4.6 might allow remote attackers to execute arbitrary code via a crafted cookie in a user comment submission, which is not properly handled when it is deserialized.    6.8  Medium  2017-01-07  2012-09-18  View

Page 2609 of 17672, showing 5 records out of 88360 total, starting on record 13041, ending on 13045

Actions