NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5042  CVE-2008-5264  Cross-site scripting (XSS) vulnerability in searcher.exe in Tornado Knowledge Retrieval System 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the p parameter in a root action.    4.3  Medium  2017-01-03  2009-04-08  View
70578  CVE-2004-0114  The shmat system call in the System V Shared Memory interface for FreeBSD 5.2 and earlier, NetBSD 1.3 and earlier, and OpenBSD 2.6 and earlier, does not properly decrement a shared memory segment"s reference count when the vm_map_find function fails, which could allow local users to gain read or write access to a portion of kernel memory and gain privileges.    4.6  Medium  2016-12-20  2016-10-17  View
5298  CVE-2008-5549  Unspecified vulnerability in the Sun Java Web Console components in Sun Java System Portal Server 7.1 and 7.2 allows remote attackers to access local files and read the product"s configuration information via unknown vectors related to "access to secure files by ThemeServlet."    Medium  2017-01-03  2011-03-07  View
71090  CVE-2004-0663  Cross-site scripting (XSS) vulnerability in modules.php in PowerPortal 1.x allows remote attackers to inject arbitrary script or HTML via the (1) id parameter to the (a) private_messages module; (2) search parameter to the (b) links and (c) content modules; and (3) files parameter to the gallery module.    6.8  Medium  2017-07-18  2017-07-10  View
71346  CVE-2004-0944  The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 generates easily predictable web session IDs, which allows remote attackers to hijack other sessions via the parentsessionid cookie.    Medium  2016-12-20  2008-09-05  View

Page 14909 of 17672, showing 5 records out of 88360 total, starting on record 74541, ending on 74545

Actions