NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3626 | CVE-2008-3761 | hcmon.sys in VMware Workstation 6.5.1 and earlier, VMware Player 2.5.1 and earlier, VMware ACE 2.5.1 and earlier, and VMware Server 1.0.x before 1.0.9 build 156507 and 2.0.x before 2.0.1 build 156745 uses the METHOD_NEITHER communication method for IOCTLs, which allows local users to cause a denial of service via a crafted IOCTL request. | 2 | 4.9 | Medium | 2017-01-03 | 2009-04-23 | View | |
| 6474 | CVE-2008-6743 | RSMScript 1.21 allows remote attackers to bypass authentication and gain administrative privileges by setting the verified cookie to an arbitrary value and performing a direct request to (1) delete.php, (2) edit-submit.php, (3) edit.php, (4) submit.php, and (5) update.php, which bypasses the security check that is performed by verify.php. | 2 | 7.5 | High | 2017-01-03 | 2009-04-23 | View | |
| 6476 | CVE-2008-6745 | index.php in BlogPHP 2.0 allows remote attackers to gain administrator privileges via a crafted email parameter in a register2 action. | 2 | 7.5 | High | 2017-01-03 | 2009-04-23 | View | |
| 6477 | CVE-2008-6746 | Cross-site scripting (XSS) vulnerability in the contact display view in Turba Contact Manager H3 before 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the contact name. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-23 | View | |
| 6478 | CVE-2008-6747 | dotProject before 2.1.2 does not properly restrict access to administrative pages, which allows remote attackers to gain privileges. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-23 | View |
Page 14665 of 17672, showing 5 records out of 88360 total, starting on record 73321, ending on 73325