NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4307  CVE-2008-4484  main.php in Crux Gallery 1.32 and earlier allows remote attackers to gain administrative access by setting the name parameter to "users," as demonstrated via index.php.    6.8  Medium  2017-01-03  2009-08-19  View
69843  CVE-2005-4245  Cross-site scripting (XSS) vulnerability in search.php in Snipe Gallery 3.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.    4.3  Medium  2017-01-03  2011-03-07  View
4563  CVE-2008-4749  Multiple insecure method vulnerabilities in the VImpX.VImpAX ActiveX control (VImpX.ocx) 4.8.8.0 in DB Software Laboratory VImp X, possibly 4.7.7, allow remote attackers to overwrite arbitrary files via (1) the LogFile property and ClearLogFile method, and (2) the SaveToFile method.    9.3  High  2017-01-03  2009-01-29  View
70099  CVE-2005-4501  MediaWiki before 1.5.4 uses a hard-coded "internal placeholder string", which allows remote attackers to bypass protection against cross-site scripting (XSS) attacks and execute Javascript using inline style attributes, which are processed by Internet Explorer.    4.3  Medium  2017-01-03  2011-03-07  View
4819  CVE-2008-5032  Stack-based buffer overflow in VideoLAN VLC media player 0.5.0 through 0.9.5 might allow user-assisted attackers to execute arbitrary code via the header of an invalid CUE image file, related to modules/access/vcd/cdrom.c. NOTE: this identifier originally included an issue related to RealText, but that issue has been assigned a separate identifier, CVE-2008-5036.    9.3  High  2017-01-03  2012-01-27  View

Page 14615 of 17672, showing 5 records out of 88360 total, starting on record 73071, ending on 73075

Actions