NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
40068 | CVE-2013-4468 | VICIDIAL dialer (aka Asterisk GUI client) 2.8-403a, 2.7, 2.7RC1, and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in the extension parameter in an OriginateVDRelogin action to manager_send.php. | 2 | 6.5 | Medium | 2017-01-18 | 2014-05-15 | View | |
6560 | CVE-2008-6829 | VicFTPS 5.0 allows remote attackers to cause a denial of service (crash) via a LIST command that starts with a "//" (forward slash, backward slash, forward slash). NOTE: this might be the same issue as CVE-2008-2031. | 2 | 5 | Medium | 2017-01-03 | 2009-06-09 | View | |
1967 | CVE-2008-2031 | VicFTPS 5.0 allows remote attackers to cause a denial of service (crash) via a crafted LIST command, which triggers a NULL pointer dereference. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
6491 | CVE-2008-6760 | ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL table names in an error message, related to code that mishandles the lack of a user_id parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-28 | View | |
6490 | CVE-2008-6759 | ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via a URL in the POST_DATA parameter to manuals_search.php, which reveals the installation path in an error message. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-28 | View |
Page 631 of 17672, showing 5 records out of 88360 total, starting on record 3151, ending on 3155