NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45093  CVE-2012-3501  The squidclamav_check_preview_handler function in squidclamav.c in SquidClamav 5.x before 5.8 and 6.x before 6.7 passes an unescaped URL to a system command call, which allows remote attackers to cause a denial of service (daemon crash) via a URL with certain characters, as demonstrated using %0D or %0A.    Medium  2017-01-19  2012-08-27  View
75360  CVE-1999-0710  The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems.    7.5  High  2017-01-05  2008-09-09  View
62771  CVE-2006-4117  The squeue_drain function in Sun Solaris 10, possibly only when run on CMT processors, allows remote attackers to cause a denial of service ("bad trap" and system panic) by opening and closing a large number of TCP connections ("heavy TCP/IP loads"). NOTE: the original report specifies the function name as "drain_squeue," but this is likely incorrect.    5.4  Medium  2016-12-20  2011-03-07  View
40503  CVE-2013-5036  The Square Squash allows remote attackers to execute arbitrary code via a YAML document in the (1) namespace parameter to the deobfuscation function or (2) sourcemap parameter to the sourcemap function in app/controllers/api/v1_controller.rb.    7.5  High  2017-01-18  2014-05-28  View
67548  CVE-2005-1824  The sql_escape_string function in auth/sql.c for the mailutils SQL authentication module does not properly quote the "" (backslash) character, which is used as an escape character and makes the module vulnerable to SQL injection attacks.    7.5  High  2017-01-03  2008-09-05  View

Page 3042 of 17672, showing 5 records out of 88360 total, starting on record 15206, ending on 15210

Actions