NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45093 | CVE-2012-3501 | The squidclamav_check_preview_handler function in squidclamav.c in SquidClamav 5.x before 5.8 and 6.x before 6.7 passes an unescaped URL to a system command call, which allows remote attackers to cause a denial of service (daemon crash) via a URL with certain characters, as demonstrated using %0D or %0A. | 2 | 5 | Medium | 2017-01-19 | 2012-08-27 | View | |
| 75360 | CVE-1999-0710 | The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems. | 2 | 7.5 | High | 2017-01-05 | 2008-09-09 | View | |
| 62771 | CVE-2006-4117 | The squeue_drain function in Sun Solaris 10, possibly only when run on CMT processors, allows remote attackers to cause a denial of service ("bad trap" and system panic) by opening and closing a large number of TCP connections ("heavy TCP/IP loads"). NOTE: the original report specifies the function name as "drain_squeue," but this is likely incorrect. | 2 | 5.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 40503 | CVE-2013-5036 | The Square Squash allows remote attackers to execute arbitrary code via a YAML document in the (1) namespace parameter to the deobfuscation function or (2) sourcemap parameter to the sourcemap function in app/controllers/api/v1_controller.rb. | 2 | 7.5 | High | 2017-01-18 | 2014-05-28 | View | |
| 67548 | CVE-2005-1824 | The sql_escape_string function in auth/sql.c for the mailutils SQL authentication module does not properly quote the "" (backslash) character, which is used as an escape character and makes the module vulnerable to SQL injection attacks. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 3042 of 17672, showing 5 records out of 88360 total, starting on record 15206, ending on 15210