NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5171 | CVE-2008-5398 | Tor before 0.2.0.32 does not properly process the ClientDNSRejectInternalAddresses configuration option in situations where an exit relay issues a policy-based refusal of a stream, which allows remote exit relays to have an unknown impact by mapping an internal IP address to the destination hostname of a refused stream. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
5172 | CVE-2008-5399 | Cross-site scripting (XSS) vulnerability in the listonlineusers (aka "Who"s online") component in mvnForum before 1.2.1 GA allows remote attackers to inject arbitrary web script or HTML via unspecified parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
5173 | CVE-2008-5400 | Multiple cross-site request forgery (CSRF) vulnerabilities in mvnForum before 1.2.1 GA allow remote attackers to (1) create forums, (2) change account privileges, (3) enable accounts, or (4) disable accounts as a product administrator via unspecified vectors, possibly related to HTTP Referer headers. | 2 | 6.8 | Medium | 2017-01-03 | 2009-05-14 | View | |
5174 | CVE-2008-5401 | Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing." | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
5175 | CVE-2008-5402 | Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID." | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View |
Page 1035 of 17672, showing 5 records out of 88360 total, starting on record 5171, ending on 5175