NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5902 | CVE-2008-6171 | includes/bootstrap.inc in Drupal 5.x before 5.12 and 6.x before 6.6, when the server is configured for "IP-based virtual hosts," allows remote attackers to include and execute arbitrary files via the HTTP Host header. | 2 | 9.3 | High | 2017-01-03 | 2009-05-14 | View | |
| 5904 | CVE-2008-6173 | Cross-site scripting (XSS) vulnerability in fullscreen.php in ClipShare Pro 4.0 allows remote attackers to inject arbitrary web script or HTML via the title parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-05-14 | View | |
| 4655 | CVE-2008-4866 | Multiple buffer overflows in libavformat/utils.c in FFmpeg 0.4.9 before r14715, as used by MPlayer, allow context-dependent attackers to have an unknown impact via vectors related to execution of DTS generation code with a delay greater than MAX_REORDER_DELAY. | 2 | 10 | High | 2017-01-03 | 2009-05-14 | View | |
| 5169 | CVE-2008-5396 | Array index error in the (1) torisa.c and (2) dahdi/tor2.c drivers in Zaptel (aka DAHDI) 1.4.11 and earlier allows local users in the dialout group to overwrite an integer value in kernel memory by writing to /dev/zap/ctl, related to missing validation of the sync field associated with the ZT_SPANCONFIG ioctl. | 2 | 7.2 | High | 2017-01-03 | 2009-05-14 | View | |
| 5173 | CVE-2008-5400 | Multiple cross-site request forgery (CSRF) vulnerabilities in mvnForum before 1.2.1 GA allow remote attackers to (1) create forums, (2) change account privileges, (3) enable accounts, or (4) disable accounts as a product administrator via unspecified vectors, possibly related to HTTP Referer headers. | 2 | 6.8 | Medium | 2017-01-03 | 2009-05-14 | View |
Page 14607 of 17672, showing 5 records out of 88360 total, starting on record 73031, ending on 73035