NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67100 | CVE-2005-1361 | Multiple SQL injection vulnerabilities in MetaCart e-Shop 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) intProdID parameter in product.asp or (2) strCatalog_NAME parameter to productsByCategory.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67356 | CVE-2005-1631 | booby.php in Booby 1.0.0 and earlier allows remote attackers to view private bookmarks by guessing item IDs. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68124 | CVE-2005-2433 | PhpList allows remote attackers to obtain sensitive information via a direct request to (1) about.php, (2) connect.php, (3) domainstats.php or (4) usercheck.php in public_html/lists/admin directory, (5) attributes.php, (6) dbcheck.php, (7) importcsv.php, (8) user.php, (9) usermgt.php, or (10) users.php in admin/commonlib/pages directory, (11) helloworld.php, or (12) sidebar.php in public_html/lists/admin/plugins directory, or (13) main.php in public_html/lists/admin/plugsins/defaultplugin directory, which reveal the path in an error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
70684 | CVE-2004-0233 | Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwrite arbitrary files via a symlink attack on device names in combination with an application that trusts the utmp or wtmp files. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
70940 | CVE-2004-0504 | Ethereal 0.10.3 allows remote attackers to cause a denial of service (crash) via certain SIP messages between Hotsip servers and clients. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 459 of 17672, showing 5 records out of 88360 total, starting on record 2291, ending on 2295