NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
888  CVE-2008-0918  SQL injection vulnerability in includes/count_dl_or_link.inc.php in the astatsPRO (com_astatspro) 1.0.1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to getfile.php, a different vector than CVE-2008-0839. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2008-09-05  View
67192  CVE-2005-1454  SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via (1) group_membership_query, (2) simul_count_query, or (3) simul_verify_query configuration entries.    7.5  High  2017-07-18  2017-07-10  View
67448  CVE-2005-1723  LaunchServices in Apple Mac OS X 10.4.x up to 10.4.1 does not properly mark file extensions and MIME types as unsafe if an Apple Uniform Type Identifier (UTI) is not created when the type is added to the database of unsafe types, which could allow attackers to bypass intended restrictions.    7.5  High  2017-01-03  2008-09-05  View
67704  CVE-2005-1992  The XMLRPC server in utils.rb for the ruby library (libruby) 1.8 sets an invalid default value that prevents "security protection" using handlers, which allows remote attackers to execute arbitrary commands.    7.5  High  2017-01-03  2013-08-21  View
67960  CVE-2005-2258  PHP remote file inclusion vulnerability in photolist.inc.php in Squito Gallery 1.33 allows remote attackers to execute arbitrary code via the photoroot parameter.    7.5  High  2017-01-03  2008-09-05  View

Page 3318 of 17672, showing 5 records out of 88360 total, starting on record 16586, ending on 16590

Actions