NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6662 | CVE-2008-6931 | Unrestricted file upload vulnerability in PHPStore Job Search (aka PHPCareers) allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a resume photo, then accessing it via a direct request to the file in jobseekers/jobseeker_profile_images. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-19 | View | |
72198 | CVE-2004-1820 | PHP remote file inclusion vulnerability in displaycategory.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary PHP code by modifying the basepath parameter to reference a URL on a remote web server that contains fileFunctions.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
6918 | CVE-2008-7187 | Coppermine Photo Gallery (CPG) 1.4.14 allows remote attackers to obtain sensitive information via a direct request to include/slideshow.inc.php, which leaks the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2009-09-10 | View | |
72454 | CVE-2004-2077 | Nadeo Game Engine for Nadeo TrackMania and Nadeo Virtual Skipper 3 allows remote attackers to cause a denial of service (server crash) via malformed data to TCP port 2350, possibly due to long values or incorrect size fields. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
7174 | CVE-2011-0036 | Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, relagted to a "dangling pointer," aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2010-2556 and CVE-2011-0035. | 2 | 9.3 | High | 2017-01-07 | 2011-07-18 | View |
Page 769 of 17672, showing 5 records out of 88360 total, starting on record 3841, ending on 3845