NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67599 | CVE-2005-1881 | upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2319 | CVE-2008-2403 | Multiple directory traversal vulnerabilities in unspecified ASP applications in Sun Java Active Server Pages (ASP) Server before 4.0.3 allow remote attackers to read or delete arbitrary files via a .. (dot dot) in the Path parameter to the MapPath method. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
67855 | CVE-2005-2151 | spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2575 | CVE-2008-2677 | Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-14 | View | |
2831 | CVE-2008-2937 | Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user"s account name. | 2 | 1.9 | Low | 2017-01-03 | 2016-12-07 | View |
Page 901 of 17672, showing 5 records out of 88360 total, starting on record 4501, ending on 4505