NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67100  CVE-2005-1361  Multiple SQL injection vulnerabilities in MetaCart e-Shop 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) intProdID parameter in product.asp or (2) strCatalog_NAME parameter to productsByCategory.asp.    7.5  High  2017-07-18  2017-07-10  View
67356  CVE-2005-1631  booby.php in Booby 1.0.0 and earlier allows remote attackers to view private bookmarks by guessing item IDs.    Medium  2017-07-18  2017-07-10  View
68124  CVE-2005-2433  PhpList allows remote attackers to obtain sensitive information via a direct request to (1) about.php, (2) connect.php, (3) domainstats.php or (4) usercheck.php in public_html/lists/admin directory, (5) attributes.php, (6) dbcheck.php, (7) importcsv.php, (8) user.php, (9) usermgt.php, or (10) users.php in admin/commonlib/pages directory, (11) helloworld.php, or (12) sidebar.php in public_html/lists/admin/plugins directory, or (13) main.php in public_html/lists/admin/plugsins/defaultplugin directory, which reveal the path in an error message.    Medium  2017-07-18  2017-07-10  View
70684  CVE-2004-0233  Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwrite arbitrary files via a symlink attack on device names in combination with an application that trusts the utmp or wtmp files.    2.1  Low  2017-07-18  2017-07-10  View
70940  CVE-2004-0504  Ethereal 0.10.3 allows remote attackers to cause a denial of service (crash) via certain SIP messages between Hotsip servers and clients.    Medium  2017-07-18  2017-07-10  View

Page 459 of 17672, showing 5 records out of 88360 total, starting on record 2291, ending on 2295

Actions