NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1466 | CVE-2008-1522 | ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), have (1) "user" as their default password for the "user" account and (2) "1234" as their default password for the "admin" account, which makes it easier for remote attackers to obtain access. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
67258 | CVE-2005-1520 | Buffer overflow in the header_get_field_name function in header.c for GNU Mailutils 0.5 and 0.6, and other versions before 0.6.90, allows remote attackers to execute arbitrary code via a crafted e-mail. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68026 | CVE-2005-2325 | Clever Copy 2.0 and 2.0a allows remote attackers to obtain the full path of the web root via a direct request to (1) ticker.php, (2) menu.php, (3) banned.php, (4) endlayout.php, (5) randomhlinesblock.php, (6) showlast.php, (7) showlast5class1.php, (8) showlast5phorum.php, (9) showlast5phorumblock.php, (10) showlastforumbb2.php, or (11) showlastforumbb2block.php. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2746 | CVE-2008-2852 | Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
3002 | CVE-2008-3118 | SQL injection vulnerability in play.php in PHPmotion 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the vid parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1239 of 17672, showing 5 records out of 88360 total, starting on record 6191, ending on 6195