NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
7026 | CVE-2008-7300 | The labeled networking implementation in Solaris Trusted Extensions in Sun Solaris 10 and OpenSolaris snv_39 through snv_67, when a labeled zone is in the installed state, allows remote authenticated users to bypass a Mandatory Access Control (MAC) policy and obtain access to the global zone. | 2 | 8.5 | High | 2017-01-03 | 2012-05-14 | View | |
7027 | CVE-2008-7301 | SQL injection vulnerability in admin/login.php in jSite 1.0 OE allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2012-05-14 | View | |
7028 | CVE-2008-7302 | SQL injection vulnerability in netinvoice.php in the nBill (com_netinvoice) component 1.2.0 SP1 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors involving "knowledge of ... the contents of an encrypted file." | 2 | 7.5 | High | 2017-01-03 | 2012-05-14 | View | |
7029 | CVE-2008-7303 | The nonet and nointernet sandbox profiles in Apple Mac OS X 10.5.x do not propagate restrictions to all created processes, which allows remote attackers to access network resources via a crafted application, as demonstrated by use of launchctl to trigger the launchd daemon"s execution of a script file, a related issue to CVE-2011-1516. | 2 | 7.6 | High | 2017-01-03 | 2011-11-21 | View | |
7030 | CVE-2008-7309 | Insoshi before 20080920 does not properly restrict the use of a hash to provide values for a model"s attributes, which allows remote attackers to set the ForumPost user_id value via a modified URL, related to a "mass assignment" vulnerability. | 2 | 5 | Medium | 2017-01-03 | 2012-04-12 | View |
Page 1406 of 17672, showing 5 records out of 88360 total, starting on record 7026, ending on 7030