NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
73069 | CVE-2004-2692 | The exec_dir PHP patch (php-exec-dir) 4.3.2 through 4.3.7 with safe mode disabled allows remote attackers to bypass restrictions and execute arbitrary commands via a backtick operator, which is not handled using the php_escape_shell_cmd function. | 2 | 9.3 | High | 2016-12-20 | 2008-09-05 | View | |
74349 | CVE-2003-1279 | S-PLUS 6.0 allows local users to overwrite arbitrary files and possibly elevate privileges via a symlink attack on (1) /tmp/__F8499 by Sqpe, (2) /tmp/PRINT.$$.out by PRINT, (3) /tmp/SUBST$PID.TXT and /tmp/ed.cmds$PID by mustfix.hlinks, (4) /tmp/file.1 and /tmp/file.2 by sas_get, (5) /tmp/file.1 by sas_vars, and (6) /tmp/sgml2html$$tmp /tmp/sgml2html$$tmp1 /tmp/sgml2html$$tmp2 by sglm2html. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
74605 | CVE-2003-1535 | Justice Guestbook 1.3 allows remote attackers to obtain the full installation path via a direct request to cfooter.php3, which leaks the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
75885 | CVE-1999-1235 | Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user"s index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link. | 2 | 4.6 | Medium | 2017-01-05 | 2008-09-05 | View | |
77165 | CVE-2000-0931 | Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View |
Page 710 of 17672, showing 5 records out of 88360 total, starting on record 3546, ending on 3550