NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
26173 | CVE-2015-4852 | The WLS Security component in Oracle WebLogic Server 10.3.6.0, 12.1.2.0, 12.1.3.0, and 12.2.1.0 allows remote attackers to execute arbitrary commands via a crafted serialized Java object in T3 protocol traffic to TCP port 7001, related to oracle_common/modules/com.bea.core.apache.commons.collections.jar. NOTE: the scope of this CVE is limited to the WebLogic Server product. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
27965 | CVE-2015-7319 | SQL injection vulnerability in cpabc_appointments_admin_int_calendar_list.inc.php in the Appointment Booking Calendar plugin before 1.1.8 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to updating the username. | 2 | 7.5 | High | 2017-07-18 | 2017-07-17 | View | |
66110 | CVE-2005-0347 | Integer overflow in RealArcade 1.2.0.994 and earlier allows remote attackers to execute arbitrary code via an RGS file with an invalid size string for the GUID and game name, which leads to a buffer overflow. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
66622 | CVE-2005-0872 | Cross-site scripting (XSS) vulnerability in calendar_scheduler.php in the Topic Calendar 1.0.1 module for phpBB allows remote attackers to inject arbitrary web script or HTML via the start parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
66878 | CVE-2005-1129 | eGroupWare 1.0.6 and earlier, when an e-mail is composed with an attachment but not sent, will send that attachment in the next e-mail, which may cause sensitive information to be sent to the wrong recipient. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View |
Page 730 of 17672, showing 5 records out of 88360 total, starting on record 3646, ending on 3650