NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1481 | CVE-2008-1537 | Directory traversal vulnerability in pb_inc/admincenter/index.php in PowerScripts PowerBook 1.21 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
68297 | CVE-2005-2608 | SafeHTML before 1.3.5 does not properly filter script in UTF-7 and CSS comments, which allows remote attackers to conduct cross-site scripting (XSS) attacks in vulnerable applications that use SafeHTML. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
3273 | CVE-2008-3392 | Cross-site request forgery (CSRF) vulnerability in Web Wiz Forum 9.5 allows remote attackers to log out a user via a link or IMG tag to log_off_user.asp. | 2 | 5.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
68809 | CVE-2005-3147 | StoreBackup before 1.19 creates the backup root with world-readable permissions, which allows local users to obtain sensitive information. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
70345 | CVE-2005-4756 | BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP5 and earlier, do not properly validate derived Principals with multiple PrincipalValidators, which might allow attackers to gain privileges. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1335 of 17672, showing 5 records out of 88360 total, starting on record 6671, ending on 6675