NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
70751 | CVE-2004-0300 | SQL injection vulnerability in Online Store Kit 3.0 allows remote attackers to inject arbitrary SQL and gain unauthorized access via (1) the cat parameter in shop.php, (2) the id parameter in more.php, (3) the cat_manufacturer parameter in shop_by_brand.php, or (4) the id parameter in listing.php. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71263 | CVE-2004-0840 | The SMTP (Simple Mail Transfer Protocol) component of Microsoft Windows XP 64-bit Edition, Windows Server 2003, Windows Server 2003 64-bit Edition, and the Exchange Routing Engine component of Exchange Server 2003, allows remote attackers to execute arbitrary code via a malicious DNS response message containing length values that are not properly validated. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
71519 | CVE-2004-1128 | Buffer overflow in CMailCOM.dll in CMailServer 5.2 allows remote attackers to execute arbitrary code via an attachment with a long filename. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
10591 | CVE-2011-4051 | CEServer.exe in the CEServer component in the Remote Agent module in InduSoft Web Studio 6.1 and 7.0 does not require authentication, which allows remote attackers to execute arbitrary code via vectors related to creation of a file, loading a DLL, and process control. | 2 | 10 | High | 2017-01-07 | 2011-12-08 | View | |
77151 | CVE-2000-0917 | Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View |
Page 967 of 17672, showing 5 records out of 88360 total, starting on record 4831, ending on 4835