NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67599  CVE-2005-1881  upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code.    7.5  High  2017-01-03  2008-09-05  View
2319  CVE-2008-2403  Multiple directory traversal vulnerabilities in unspecified ASP applications in Sun Java Active Server Pages (ASP) Server before 4.0.3 allow remote attackers to read or delete arbitrary files via a .. (dot dot) in the Path parameter to the MapPath method.    10  High  2017-01-03  2011-03-07  View
67855  CVE-2005-2151  spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption.    Medium  2017-01-03  2008-09-05  View
2575  CVE-2008-2677  Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter.    4.3  Medium  2017-01-03  2009-04-14  View
2831  CVE-2008-2937  Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user"s account name.    1.9  Low  2017-01-03  2016-12-07  View

Page 901 of 17672, showing 5 records out of 88360 total, starting on record 4501, ending on 4505

Actions