NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2856 | CVE-2008-2962 | Multiple cross-site scripting (XSS) vulnerabilities in MyBlog allow remote attackers to inject arbitrary web script or HTML via the (1) s and (2) sort parameters to index.php, and the (3) id parameter to post.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-14 | View | |
68392 | CVE-2005-2703 | Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to modify HTTP headers of XML HTTP requests via XMLHttpRequest, and possibly use the client to exploit vulnerabilities in servers or proxies, including HTTP request smuggling and HTTP request splitting. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
3112 | CVE-2008-3229 | Stack-based buffer overflow in op before Changeset 563, when xauth support is enabled, allows local users to gain privileges via a long XAUTHORITY environment variable. | 2 | 6.9 | Medium | 2017-01-03 | 2008-09-10 | View | |
68648 | CVE-2005-2984 | Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
68904 | CVE-2005-3242 | Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled. | 2 | 5 | Medium | 2017-01-03 | 2010-08-21 | View |
Page 1456 of 17672, showing 5 records out of 88360 total, starting on record 7276, ending on 7280