NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3275  CVE-2008-3394  Multiple cross-site scripting (XSS) vulnerabilities in search.cfm in BookMine allow remote attackers to inject arbitrary web script or HTML via the (1) gallery and (2) search_string parameters.    4.3  Medium  2017-01-03  2009-02-26  View
68811  CVE-2005-3149  Uim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the LIBUIM_VANILLA environment variable when a suid or sgid application is linked to libuim, such as immodule for Qt, which allows local users to gain privileges.    4.6  Medium  2017-01-03  2011-03-07  View
3531  CVE-2008-3663  Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.    Medium  2017-01-03  2010-08-21  View
69067  CVE-2005-3405  ATutor 1.4.1 through 1.5.1-pl1 allows remote attackers to execute arbitrary PHP functions via a direct request to forum.inc.php with a modified addslashes parameter with either the (1) asc or (2) desc parameters set, possibly due to an eval injection vulnerability.    7.5  High  2017-01-03  2016-10-17  View
3787  CVE-2008-3925  Cross-site request forgery (CSRF) vulnerability in admin.php in Content Management Made Easy (CMME) 1.12 allows remote attackers to trigger the logout of an administrative user via a logout action.    4.3  Medium  2017-01-03  2009-01-29  View

Page 14468 of 17672, showing 5 records out of 88360 total, starting on record 72336, ending on 72340

Actions