NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1488 | CVE-2008-1544 | The setRequestHeader method of the XMLHttpRequest object in Microsoft Internet Explorer 5.01, 6, and 7 does not block dangerous HTTP request headers when certain 8-bit character sequences are appended to a header name, which allows remote attackers to (1) conduct HTTP request splitting and HTTP request smuggling attacks via an incorrect Content-Length header, (2) access arbitrary virtual hosts via a modified Host header, (3) bypass referrer restrictions via an incorrect Referer header, and (4) bypass the same-origin policy and obtain sensitive information via a crafted request header. | 2 | 7.1 | High | 2017-01-03 | 2011-06-14 | View | |
| 67024 | CVE-2005-1285 | Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the hilight parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 1744 | CVE-2008-1804 | preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 67280 | CVE-2005-1553 | GeoVision Digital Video Surveillance System 6.04, 6.1 and 7.0 uses a weak encryption scheme to encrypt passwords, which allows remote attackers to obtain the password via sniffing. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 2000 | CVE-2008-2065 | SQL injection vulnerability in jokes.php in YourFreeWorld Jokes Site Script allows remote attackers to execute arbitrary SQL commands via the catagorie parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 14408 of 17672, showing 5 records out of 88360 total, starting on record 72036, ending on 72040