NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68618 | CVE-2005-2954 | SQL injection vulnerability in password_reminder.php in ATutor before 1.5.1 pl1 allows remote attackers to execute arbitrary SQL commands via the email field. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
3338 | CVE-2008-3457 | Cross-site scripting (XSS) vulnerability in setup.php in phpMyAdmin before 2.11.8 allows user-assisted remote attackers to inject arbitrary web script or HTML via crafted setup arguments. NOTE: this issue can only be exploited in limited scenarios in which the attacker must be able to modify config/config.inc.php. | 2 | 2.6 | Low | 2017-01-03 | 2011-03-07 | View | |
68874 | CVE-2005-3212 | Multiple interpretation error in unspecified versions of NOD32 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper. | 2 | 5.1 | Medium | 2017-01-03 | 2016-10-17 | View | |
3594 | CVE-2008-3729 | Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to bypass authentication and obtain administrative access via a direct request with (1) an IsAdmin=true cookie value or (2) no cookie. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
69130 | CVE-2005-3469 | SQL injection vulnerability in index.php in News2Net 3.0.0.0 allows remote attackers to execute arbitrary SQL commands via the category parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 685 of 17672, showing 5 records out of 88360 total, starting on record 3421, ending on 3425