NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68742 | CVE-2005-3079 | PunBB before 1.2.8 allows remote attackers to perform "code inclusion" via the user language selection. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
70022 | CVE-2005-4424 | Directory traversal vulnerability in PHPKIT 1.6.1 R2 and earlier might allow remote authenticated users to execute arbitrary PHP code via a .. (dot dot) in the path parameter and a %00 at the end of the filename, as demonstrated by an avatar filename ending with .png%00. | 2 | 6.5 | Medium | 2017-01-03 | 2008-09-05 | View | |
70278 | CVE-2005-4689 | Six Apart Movable Type 3.16 stores account names and password hashes in a cookie, which allows remote attackers to login to an account by sniffing the cookie. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
73862 | CVE-2003-0757 | Check Point FireWall-1 4.0 and 4.1 before SP5 allows remote attackers to obtain the IP addresses of internal interfaces via certain SecuRemote requests to TCP ports 256 or 264, which leaks the IP addresses in a reply packet. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
74374 | CVE-2003-1304 | EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 895 of 17672, showing 5 records out of 88360 total, starting on record 4471, ending on 4475