NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88226 | CVE-2017-9791 | The Struts 1 plugin in Apache Struts 2.3.x might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage. | 2 | 7.5 | High | 2017-07-18 | 2017-07-16 | View | |
65955 | CVE-2005-0191 | Off-by-one buffer overflow in the processing of tags in Real Metadata Package (RMP) files in RealPlayer 10.5 (6.0.12.1040) and earlier could allow remote attackers to execute arbitrary code via a long tag. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
66979 | CVE-2005-1233 | Cross-site scripting (XSS) vulnerability in index.php in PHP Labs proFile allows remote attackers to inject arbitrary web script or HTML via the (1) dir or (2) file parameters. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
67235 | CVE-2005-1497 | index.php in myBloggie 2.1.1 allows remote attackers to obtain sensitive information via an invalid post_id parameter, which reveals the path in an error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
69027 | CVE-2005-3365 | Multiple SQL injection vulnerabilities in DCP-Portal 6 and earlier allow remote attackers to execute arbitrary SQL commands, possibly requiring encoded characters, via (1) the name parameter in register.php, (2) the email parameter in lostpassword.php, (3) the year parameter in calendar.php, and the (4) cid parameter to index.php. NOTE: the mid parameter for forums.php is already associated with CVE-2005-0454. NOTE: the index.php/cid vector was later reported to affect 6.11. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 879 of 17672, showing 5 records out of 88360 total, starting on record 4391, ending on 4395