NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66609 | CVE-2005-0859 | PHP remote file inclusion vulnerability in CzarNews 1.13b allows remote attackers to execute arbitrary PHP code via the tpath parameter to (1) headlines.php or (2) news.php. NOTE: some sources have reported the "dir" parameter as being affected; however, this is likely a cut-and-paste error from the wrong section of the original vulnerability report. Also, the news.php version was later reported to be in 1.12 through 1.14. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67121 | CVE-2005-1382 | The webcacheadmin module in Oracle Webcache 9i allows remote attackers to corrupt arbitrary files via a full pathname in the cache_dump_file parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68145 | CVE-2005-2454 | IBM Lotus Notes 6.5.4 and 6.5.5, and 7.0.0 and 7.0.1, uses insecure default permissions (Everyone/Full Control) for the "Notes" folder and all children, which allows local users to gain privileges and modify, add, or delete files in that folder. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
68401 | CVE-2005-2712 | The LDAP server (nldap.exe) in IBM Lotus Domino before 7.0.1, 6.5.5, and 6.5.4 FP2 allows remote attackers to cause a denial of service (crash) via a long bind request, which triggers a null dereference. | 2 | 7.8 | High | 2017-07-18 | 2017-07-10 | View | |
70705 | CVE-2004-0254 | Cross-site scripting (XSS) vulnerability in Discuz! Board 2.x and 3.x allows remote attackers to execute arbitrary script as other users via an img tag. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 450 of 17672, showing 5 records out of 88360 total, starting on record 2246, ending on 2250