NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66929 | CVE-2005-1180 | HTTP Response Splitting vulnerability in the Surveys module in PHP-Nuke 7.6 allows remote attackers to spoof web content and poison web caches via hex-encoded CRLF ("%0d%0a") sequences in the forwarder parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67697 | CVE-2005-1983 | Stack-based buffer overflow in the Plug and Play (PnP) service for Microsoft Windows 2000 and Windows XP Service Pack 1 allows remote attackers to execute arbitrary code via a crafted packet, and local users to gain privileges via a malicious application, as exploited by the Zotob (aka Mytob) worm. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
67953 | CVE-2005-2251 | PHP remote file inclusion vulnerability in secure.php in PHPSecurePages (phpSP) 0.28beta and earlier allows remote attackers to execute arbitrary code via the cfgProgDir parameter, a variant of CVE-2001-1468. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
68721 | CVE-2005-3058 | Interpretation conflict in Fortinet FortiGate 2.8, running FortiOS 2.8MR10 and v3beta, allows remote attackers to bypass the URL blocker via an (1) HTTP request terminated with a line feed (LF) and not carriage return line feed (CRLF) or (2) HTTP request with no Host field, which is still processed by most web servers without violating RFC2616. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
69233 | CVE-2005-3573 | Scrubber.py in Mailman 2.1.5-8 does not properly handle UTF8 character encodings in filenames of e-mail attachments, which allows remote attackers to cause a denial of service (application crash). | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 669 of 17672, showing 5 records out of 88360 total, starting on record 3341, ending on 3345