NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67594 | CVE-2005-1876 | Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges to execute arbitrary PHP code via certain inputs that are injected into a template (.tpl) file. | 2 | 4.6 | Medium | 2017-01-03 | 2016-10-17 | View | |
2314 | CVE-2008-2398 | Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the appservlang parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
67850 | CVE-2005-2146 | SSH Tectia Server 4.3.1 and earlier, and SSH Secure Shell for Windows Servers, uses insecure permissions when generating the Secure Shell host identification key, which allows local users to access the key and spoof the server. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
68874 | CVE-2005-3212 | Multiple interpretation error in unspecified versions of NOD32 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper. | 2 | 5.1 | Medium | 2017-01-03 | 2016-10-17 | View | |
3850 | CVE-2008-3988 | Unspecified vulnerability in the iSupplier Portal component in Oracle E-Business Suite 11.5.10.2 and 12.0.4 allows remote attackers to affect confidentiality via unknown vectors. | 2 | 5 | Medium | 2017-01-03 | 2012-10-22 | View |
Page 367 of 17672, showing 5 records out of 88360 total, starting on record 1831, ending on 1835