NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2827 | CVE-2008-2933 | Mozilla Firefox before 2.0.0.16, and 3.x before 3.0.1, interprets "|" (pipe) characters in a command-line URI as requests to open multiple tabs, which allows remote attackers to access chrome:i URIs, or read arbitrary local files via manipulations involving a series of URIs that is not entirely handled by a vector application, as exploited in conjunction with CVE-2008-2540. NOTE: this issue exists because of an insufficient fix for CVE-2005-2267. | 2 | 2.6 | Low | 2017-01-03 | 2013-08-02 | View | |
68363 | CVE-2005-2674 | ** DISPUTED ** Note: the vendor has disputed this issue. Multiple cross-site scripting (XSS) vulnerabilities in Land Down Under (LDU) 800 allow remote attackers to inject arbitrary web script or HTML via the (1) c or (2) m parameters to index.php or (3) w parameter to journal.php. NOTE: this issue has been disputed by the vendor, who says "None of the tricks written there are working, the variables are properly sanitized and no LDU version is affected." | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
3083 | CVE-2008-3200 | SQL injection vulnerability in vlc_forum.php in Avlc Forum as of 20080715 allows remote attackers to execute arbitrary SQL commands via the id parameter in an affich_message action. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
68619 | CVE-2005-2955 | config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute arbitrary code by uploading files with other executable extensions such as .inc, .php4, or others. | 2 | 4.6 | Medium | 2017-01-03 | 2016-10-17 | View | |
3339 | CVE-2008-3458 | Vtiger CRM before 5.0.4 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read mail merge templates via a direct request to the wordtemplatedownload directory. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1103 of 17672, showing 5 records out of 88360 total, starting on record 5511, ending on 5515