NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17628 | CVE-2016-1181 | ActionServlet.java in Apache Struts 1 1.x through 1.3.10 mishandles multithreaded access to an ActionForm instance, which allows remote attackers to execute arbitrary code or cause a denial of service (unexpected memory access) via a multipart request, a related issue to CVE-2015-0899. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
24866 | CVE-2015-2904 | Actiontec GT784WN modems with firmware before NCS01-1.0.13 have hardcoded credentials, which makes it easier for remote attackers to obtain root access by connecting to the web administration interface. | 2 | 8.3 | High | 2017-01-19 | 2015-08-24 | View | |
60764 | CVE-2006-2059 | action_public/search.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary PHP code via a search with a crafted value of the lastdate parameter, which alters the behavior of a regular expression to add a "#e" (execute) modifier. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
74328 | CVE-2003-1258 | activate.php in versatileBulletinBoard (vBB) 0.9.5 and 0.9.6 allows remote attackers to gain unauthorized administrative access via a URL request with the uid parameter set to the webmaster uid. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
674 | CVE-2008-0701 | ActivationHandler in Magnolia CE 3.5.x before 3.5.4 does not check permissions during importing, which allows remote attackers to have an unknown impact via activation of a new item, possibly involving addition of arbitrary new content. | 2 | 5 | Medium | 2017-01-03 | 2008-12-17 | View |
Page 590 of 17672, showing 5 records out of 88360 total, starting on record 2946, ending on 2950