NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2821 | CVE-2008-2927 | Multiple integer overflows in the msn_slplink_process_msg functions in the MSN protocol handler in (1) libpurple/protocols/msn/slplink.c and (2) libpurple/protocols/msnp9/slplink.c in Pidgin before 2.4.3 and Adium before 1.3 allow remote attackers to execute arbitrary code via a malformed SLP message with a crafted offset value, a different vulnerability than CVE-2008-2955. | 2 | 6.8 | Medium | 2017-01-03 | 2013-11-02 | View | |
68357 | CVE-2005-2668 | Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
3077 | CVE-2008-3194 | Multiple directory traversal vulnerabilities in data/inc/themes/predefined_variables.php in pluck 4.5.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) langpref, (2) file, (3) blogpost, or (4) cat parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
68613 | CVE-2005-2949 | pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
3333 | CVE-2008-3452 | SQL injection vulnerability in the Calendar module in eNdonesia 8.4 allows remote attackers to execute arbitrary SQL commands via the loc_id parameter in a list_events action to mod.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 695 of 17672, showing 5 records out of 88360 total, starting on record 3471, ending on 3475