NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4477 | CVE-2008-4663 | Cross-site scripting (XSS) vulnerability in analysis.cgi 1.44, as used in K"s CGI Access Log Kaiseki (1) jcode.pl and (2) Jcode.pm, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-21 | View | |
| 154 | CVE-2008-0166 | OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that generates predictable numbers, which makes it easier for remote attackers to conduct brute force guessing attacks against cryptographic keys. | 2 | 7.8 | High | 2017-01-03 | 2009-02-21 | View | |
| 1252 | CVE-2008-1293 | ldm in Linux Terminal Server Project (LTSP) 0.99 and 2 passes the -ac option to the X server on each LTSP client, which allows remote attackers to connect to this server via TCP port 6006 (aka display :6). | 2 | 4.8 | Medium | 2017-01-03 | 2009-02-21 | View | |
| 4336 | CVE-2008-4513 | Cross-site scripting (XSS) vulnerability in BBcode API module in Phorum 5.2.8 allows remote attackers to inject arbitrary web script or HTML via nested BBcode image tags. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-21 | View | |
| 54544 | CVE-2007-2377 | The Getahead Direct Web Remoting (DWR) framework 1.1.4 exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking." | 2 | 5 | Medium | 2017-01-07 | 2009-02-20 | View |
Page 14896 of 17672, showing 5 records out of 88360 total, starting on record 74476, ending on 74480