NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48224 | CVE-2009-0912 | perl-MDK-Common 1.1.11 and 1.1.24, 1.2.9 through 1.2.14, and possibly other versions, in Mandriva Linux does not properly handle strings when writing them to configuration files, which allows attackers to gain privileges via "special characters" in unspecified vectors. | 2 | 7.2 | High | 2017-01-07 | 2009-03-17 | View | |
| 3214 | CVE-2008-3333 | Directory traversal vulnerability in core/lang_api.php in Mantis before 1.1.2 allows remote attackers to include and execute arbitrary files via the language parameter to the user preferences page (account_prefs_update.php). | 2 | 7.5 | High | 2017-01-03 | 2009-03-17 | View | |
| 3986 | CVE-2008-4130 | Cross-site scripting (XSS) vulnerability in Gallery 2.x before 2.2.6 allows remote attackers to inject arbitrary web script or HTML via a crafted Flash animation, related to the ability of the animation to "interact with the embedding page." | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-17 | View | |
| 4003 | CVE-2008-4147 | Cross-site scripting (XSS) vulnerability in the Mailsave module 5.x before 5.x-3.3 and 6.x before 6.x-1.3, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via an e-mail message with an attached file that has a modified Content-Type. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-17 | View | |
| 4005 | CVE-2008-4149 | Cross-site scripting (XSS) vulnerability in the Greg Holsclaw Link to Us module 5.x before 5.x-1.1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via the "Link page header" field. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-17 | View |
Page 14814 of 17672, showing 5 records out of 88360 total, starting on record 74066, ending on 74070