NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6561 | CVE-2008-6830 | The disconnection feature in Citrix Web Interface 5.0 and 5.0.1 for Java Application Servers does not properly terminate a user"s web interface session, which allows attackers with access to the same browser instance to gain access to the user"s Web Interface session. NOTE: the attacker must also have valid credentials to the Web Interface. | 2 | 4 | Medium | 2017-01-03 | 2009-06-09 | View | |
6562 | CVE-2008-6831 | Multiple cross-site scripting (XSS) vulnerabilities in Atlassian JIRA Enterprise Edition 3.13 allow remote attackers to inject arbitrary web script or HTML via the (1) fullname (Full Name) parameter in the ViewProfile page or (2) returnUrl parameter in a form, as demonstrated using secure/AddComment!default.jspa (aka "Add Comment"). | 2 | 4.3 | Medium | 2017-01-03 | 2016-11-18 | View | |
6563 | CVE-2008-6832 | Cross-site request forgery (CSRF) vulnerability in Atlassian JIRA Enterprise Edition 3.13 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.8 | Medium | 2017-01-03 | 2009-06-09 | View | |
6564 | CVE-2008-6833 | Directory traversal vulnerability in commsrss.php in fuzzylime (cms) before 3.01b allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in a files array element for a blogs action, as demonstrated by the files[0] parameter. | 2 | 10 | High | 2017-01-03 | 2009-08-13 | View | |
6565 | CVE-2008-6834 | Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.01 and 3.01a allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the s parameter to code/commupdate.php in a count action or (2) the heads parameter to code/newsheads.php. NOTE: the blog.php vector is already covered by CVE-2008-3164. | 2 | 10 | High | 2017-01-03 | 2009-06-25 | View |
Page 1313 of 17672, showing 5 records out of 88360 total, starting on record 6561, ending on 6565