NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
521  CVE-2008-0546  Multiple SQL injection vulnerabilities in CandyPress (CP) 4.1.1.26, and earlier 4.1.x versions, allow remote attackers to execute arbitrary SQL commands via the (1) idProduct and (2) options parameters to (a) ajax/ajax_optInventory.asp, or the (2) recid parameter to (b) ajax/ajax_getBrands.asp.    7.5  High  2017-01-03  2009-08-20  View
522  CVE-2008-0547  Cross-site scripting (XSS) vulnerability in admin/utilities_ConfigHelp.asp in CandyPress (CP) 4.1.1.26, and probably earlier 4.x and 3.x versions, allows remote attackers to inject arbitrary web script or HTML via the helpfield parameter.    4.3  Medium  2017-01-03  2009-08-20  View
523  CVE-2008-0548  Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) via a large integer in the Content-Length HTTP header, which triggers a NULL dereference when malloc fails.    Medium  2017-01-03  2008-09-05  View
524  CVE-2008-0549  Integer overflow in the OggHeaderParse function in Steamcast 0.9.75 and earlier allows remote authenticated users to cause a denial of service (daemon crash) via a long Ogg tag.    Medium  2017-01-03  2008-09-05  View
525  CVE-2008-0550  Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a certain HTTP request that leads to a buffer overflow, as demonstrated by a long User-Agent header.    10  High  2017-01-03  2008-09-05  View

Page 105 of 17672, showing 5 records out of 88360 total, starting on record 521, ending on 525

Actions