NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 585 | CVE-2008-0610 | Stack-based buffer overflow in the ClientConnection::NegotiateProtocolVersion function in vncviewer/ClientConnection.cpp in vncviewer for UltraVNC 1.0.2 and 1.0.4 before 01252008, when in LISTENING mode or when using the DSM plugin, allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a modified size value. | 2 | 9.3 | High | 2017-01-03 | 2012-08-13 | View | |
| 66121 | CVE-2005-0360 | The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote attackers to create or append to arbitrary files. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 841 | CVE-2008-0870 | BEA WebLogic Portal 10.0 and 9.2 through Maintenance Pack 2, under certain circumstances, can redirect a user from the https:// URI for the Portal Administration Console to an http URI, which allows remote attackers to sniff the session. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 1097 | CVE-2008-1136 | The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attackers to execute arbitrary commands via shell metacharacters in a certain string to TCP port 5679. | 2 | 9.3 | High | 2017-01-03 | 2008-09-05 | View | |
| 1353 | CVE-2008-1396 | Plone CMS 3.x uses invariant data (a client username and a server secret) when calculating an HMAC-SHA1 value for an authentication cookie, which makes it easier for remote attackers to gain permanent access to an account by sniffing the network. | 2 | 4.3 | Medium | 2017-01-03 | 2008-10-11 | View |
Page 14525 of 17672, showing 5 records out of 88360 total, starting on record 72621, ending on 72625