NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6951 | CVE-2008-7220 | Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors. | 2 | 7.5 | High | 2017-01-03 | 2011-02-01 | View | |
6952 | CVE-2008-7221 | Cross-site request forgery (CSRF) vulnerability in RunCMS 1.6.1 allows remote attackers to hijack the authentication of administrators for requests that (1) add new administrators or (2) modify user profiles via a crafted request to system/admin.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-14 | View | |
6953 | CVE-2008-7222 | Cross-site scripting (XSS) vulnerability in system/admin.php in RunCMS 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the rank_title parameter in a RankForumAdd action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-14 | View | |
6954 | CVE-2008-7223 | Multiple cross-site scripting (XSS) vulnerabilities in LinPHA before 1.3.3 allow remote attackers to inject arbitrary web script or HTML via (1) ftp/index.php, (2) viewer.php, (3) functions/other.php, (4) include/left_menu.class.php, or (5) plugins/stats/stats_view.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-15 | View | |
6955 | CVE-2008-7224 | Buffer overflow in entity_cache in ELinks before 0.11.4rc0 allows remote attackers to cause a denial of service (crash) via a crafted link. | 2 | 7.8 | High | 2017-01-03 | 2010-08-21 | View |
Page 1391 of 17672, showing 5 records out of 88360 total, starting on record 6951, ending on 6955