NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1207  CVE-2008-1248  The web interface on the central phone server for the Snom 320 SIP Phone allows remote attackers to make arbitrary phone calls via the "Call a number" field. NOTE: this might overlap CVE-2007-3440.    5.8  Medium  2017-01-03  2008-09-05  View
66743  CVE-2005-0994  Multiple SQL injection vulnerabilities in ProductCart 2.7 allow remote attackers to execute arbitrary SQL commands via (1) the Category or resultCnt parameters to advSearch_h.asp, and possibly (2) the offset parameter to tarinasworld_butterflyjournal.asp. NOTE: it is possible that item (2) is the result of a typo or editing error from the original research report.    7.5  High  2017-01-03  2008-09-05  View
68023  CVE-2005-2322  Cross-site scripting (XSS) vulnerability in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allows remote attackers to inject arbitrary web script or HTML via the (1) viewuser_id or (2) group parameter to users.php.    4.3  Medium  2017-01-03  2008-09-05  View
2743  CVE-2008-2849  Cross-site scripting (XSS) vulnerability in the TrailScout module 5.x before 5.x-1.4 for Drupal allows remote authenticated users, with create post permissions, to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-03  2008-09-05  View
70327  CVE-2005-4738  IBM DB2 Universal Database (UDB) 810 before ESE AIX 5765F4100 does not ensure that a user has execute privileges before permitting object creation based on routines, which allows remote authenticated users to gain privileges.    6.5  Medium  2017-01-03  2008-09-05  View

Page 1220 of 17672, showing 5 records out of 88360 total, starting on record 6096, ending on 6100

Actions