NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1482 | CVE-2008-1538 | Cross-site scripting (XSS) vulnerability in searchAction.do in ManageEngine EventLog Analyzer 5 allows remote attackers to inject arbitrary web script or HTML via the searchText parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
68298 | CVE-2005-2609 | index.php in VegaDNS 0.8.1, 0.9.8, and possibly other versions, allows remote attackers to obtain the full server path via an invalid VDNS_Sessid parameter. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
68810 | CVE-2005-3148 | StoreBackup before 1.19 does not properly set the uid and guid for symbolic links (1) that are backed up by storeBackup.pl, or (2) recovered by storeBackupRecover.pl, which could cause files to be restored with incorrect ownership. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
70346 | CVE-2005-4757 | BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier, and 7.0 SP5 and earlier, do not properly "constrain" a "/" (slash) servlet root URL pattern, which might allow remote attackers to bypass intended servlet protections. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
72650 | CVE-2004-2273 | efFingerD 0.2.12 allows remote attackers to cause a denial of service (daemon crash) via a packet with a single byte, which triggers a "Wrong protocol or connection state" error. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1341 of 17672, showing 5 records out of 88360 total, starting on record 6701, ending on 6705