NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5135 | CVE-2008-5357 | Integer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier might allow remote attackers to execute arbitrary code via a crafted TrueType font file, which triggers a heap-based buffer overflow. | 2 | 9.3 | High | 2017-01-03 | 2016-08-22 | View | |
5391 | CVE-2008-5649 | SQL injection vulnerability in admin/admin.php in AlstraSoft Article Manager Pro 1.6 allows remote attackers to execute arbitrary SQL commands via the username parameter. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
71183 | CVE-2004-0757 | Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71695 | CVE-2004-1315 | viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by double-encoding the highlight value so that special characters are inserted into the result, which is then processed by PHP exec, as exploited by the Santy.A worm. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
6671 | CVE-2008-6940 | TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a database backup via a direct request to admin/backup/db. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View |
Page 755 of 17672, showing 5 records out of 88360 total, starting on record 3771, ending on 3775