NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6431 | CVE-2008-6700 | Multiple cross-site scripting (XSS) vulnerabilities in Butterfly Organizer 2.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) mytable parameter to view.php, (2) mytable parameter to viewdb2.php, (3) tablehere parameter to category-rename.php, and (4) letter parameter to module-contacts.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-13 | View | |
6432 | CVE-2008-6701 | NetScout (formerly Network General) Visualizer V2100 and InfiniStream i1730 do not restrict access to ResourceManager/en_US/domains/add_domain.jsp, which allows remote attackers to gain administrator privileges via a direct request. | 2 | 7.5 | High | 2017-01-03 | 2009-04-13 | View | |
6433 | CVE-2008-6702 | S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (crash) via a long nickname, which triggers an exception. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
6434 | CVE-2008-6703 | Stack-based buffer overflow in the IPureServer::_Recieve function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to execute arbitrary code via a compressed 0x39 packet, which is decompressed by the NET_Compressor::Decompress function. | 2 | 10 | High | 2017-01-03 | 2013-01-03 | View | |
6435 | CVE-2008-6704 | Integer overflow in the NET_Compressor::Decompress function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (server crash) via a crafted packet with a 0xc1 value that contains no compressed data, which triggers a copy of a large amount of memory. | 2 | 5 | Medium | 2017-01-03 | 2009-04-25 | View |
Page 1287 of 17672, showing 5 records out of 88360 total, starting on record 6431, ending on 6435