NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1290 | CVE-2008-1331 | cgi-data/FastJSData.cgi in OmniPCX Office with Internet Access services OXO210 before 210/091.001, OXO600 before 610/014.001, and other versions, allows remote attackers to execute arbitrary commands and "obtain OXO resources" via shell metacharacters in the id2 parameter. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
67082 | CVE-2005-1343 | Stack-based buffer overflow in the VPN daemon (vpnd) for Mac OS X before 10.3.9 allows local users to execute arbitrary code via a long -i (Server_id) argument. | 2 | 7.2 | High | 2017-01-03 | 2008-09-05 | View | |
2058 | CVE-2008-2124 | SQL injection vulnerability in modules/print.asp in fipsASP fipsCMS allows remote attackers to execute arbitrary SQL commands via the lg parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-11-26 | View | |
2570 | CVE-2008-2672 | Multiple directory traversal vulnerabilities in ErfurtWiki R1.02b and earlier, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) ewiki_id and (2) ewiki_action parameters to fragments/css.php, and possibly the (3) id parameter to the default URI. NOTE: the default URI is site-specific but often performs an include_once of ewiki.php. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
68106 | CVE-2005-2415 | Multiple SQL injection vulnerabilities in Contrexx before 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) value parameter to the poll module or (2) pId parameter to the gallery module. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 614 of 17672, showing 5 records out of 88360 total, starting on record 3066, ending on 3070