NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3275 | CVE-2008-3394 | Multiple cross-site scripting (XSS) vulnerabilities in search.cfm in BookMine allow remote attackers to inject arbitrary web script or HTML via the (1) gallery and (2) search_string parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-26 | View | |
| 68811 | CVE-2005-3149 | Uim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the LIBUIM_VANILLA environment variable when a suid or sgid application is linked to libuim, such as immodule for Qt, which allows local users to gain privileges. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 3531 | CVE-2008-3663 | Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie. | 2 | 5 | Medium | 2017-01-03 | 2010-08-21 | View | |
| 69067 | CVE-2005-3405 | ATutor 1.4.1 through 1.5.1-pl1 allows remote attackers to execute arbitrary PHP functions via a direct request to forum.inc.php with a modified addslashes parameter with either the (1) asc or (2) desc parameters set, possibly due to an eval injection vulnerability. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 3787 | CVE-2008-3925 | Cross-site request forgery (CSRF) vulnerability in admin.php in Content Management Made Easy (CMME) 1.12 allows remote attackers to trigger the logout of an administrative user via a logout action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 14468 of 17672, showing 5 records out of 88360 total, starting on record 72336, ending on 72340