NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5698  CVE-2008-5967  admin/index.php in PHP iCalendar 2.3.4, 2.24, and earlier does not require administrative authentication for an addupdate action, which allows remote attackers to upload a calendar (aka .ics) file with arbitrary content to the calendars/ directory outside the web root.    7.5  High  2017-01-03  2009-02-05  View
5954  CVE-2008-6223  PHP remote file inclusion vulnerability in visualizza.php in Way Of The Warrior (WOTW) 5.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the plancia parameter to crea.php.    7.5  High  2017-01-03  2009-02-24  View
71490  CVE-2004-1098  MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header.    7.5  High  2017-07-18  2017-07-10  View
6722  CVE-2008-6991  SQL injection vulnerability in public/page.php in Websens CMSbright allows remote attackers to execute arbitrary SQL commands via the id_rub_page parameter.    7.5  High  2017-01-03  2009-08-19  View
72770  CVE-2004-2393  Java Secure Socket Extension (JSSE) 1.0.3 through 1.0.3_2 does not properly validate the certificate chain of a client or server, which allows remote attackers to falsely authenticate peers for SSL/TLS.    7.5  High  2017-07-18  2017-07-10  View

Page 2681 of 17672, showing 5 records out of 88360 total, starting on record 13401, ending on 13405

Actions