NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70441  CVE-2005-4852  The siteaccess URIMatching implementation in eZ publish 3.5 through 3.8 before 20050812 converts all non-alphanumeric characters in a URI to "_" (underscore), which allows remote attackers to bypass access restrictions by inserting certain characters in a URI, as demonstrated by a request for /admin:de, which matches a rule allowing only /admin_de to access /admin.    Medium  2017-01-03  2015-07-28  View
5161  CVE-2008-5383  Stack-based buffer overflow in National Instruments Electronics Workbench allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted .ewb file.    9.3  High  2017-01-03  2009-01-29  View
70697  CVE-2004-0246  Multiple PHP remote file inclusion vulnerabilities in (1) fonctions.lib.php, (2) derniers_commentaires.php, and (3) admin.php in Les Commentaires 2.0 allow remote attackers to execute arbitrary PHP code via the rep parameter.    10  High  2017-07-18  2017-07-10  View
5417  CVE-2008-5675  Unspecified vulnerability in IBM WebSphere Portal 6.0 before 6.0.1.5 has unknown impact and attack vectors related to "Access problems with BasicAuthTAI."    10  High  2017-01-03  2011-03-07  View
70953  CVE-2004-0519  Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via multiple attack vectors, including the mailbox parameter in compose.php.    6.8  Medium  2017-07-18  2017-07-10  View

Page 3142 of 17672, showing 5 records out of 88360 total, starting on record 15706, ending on 15710

Actions