NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5306  CVE-2008-5557  Heap-based buffer overflow in ext/mbstring/libmbfl/filters/mbfilter_htmlent.c in the mbstring extension in PHP 4.3.0 through 5.2.6 allows context-dependent attackers to execute arbitrary code via a crafted string containing an HTML entity, which is not properly handled during Unicode conversion, related to the (1) mb_convert_encoding, (2) mb_check_encoding, (3) mb_convert_variables, and (4) mb_parse_str functions.    10  High  2017-01-03  2011-03-07  View
5307  CVE-2008-5558  Asterisk Open Source 1.2.26 through 1.2.30.3 and Business Edition B.2.3.5 through B.2.5.5, when realtime IAX2 users are enabled, allows remote attackers to cause a denial of service (crash) via authentication attempts involving (1) an unknown user or (2) a user using hostname matching.    4.3  Medium  2017-01-03  2011-03-07  View
5308  CVE-2008-5559  SQL injection vulnerability in sendcard.cfm in PostEcards allows remote attackers to execute arbitrary SQL commands via the cid parameter.    7.5  High  2017-01-03  2009-03-18  View
5309  CVE-2008-5560  PostEcards stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for postcards.mdb.    Medium  2017-01-03  2009-03-18  View
5310  CVE-2008-5561  SQL injection vulnerability in Netref 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) fiche_product.php and (2) presentation.php.    7.5  High  2017-01-03  2009-01-29  View

Page 1062 of 17672, showing 5 records out of 88360 total, starting on record 5306, ending on 5310

Actions