NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5100  CVE-2008-5322  Wysi Wiki Wyg 1.0 allows remote attackers to obtain system information via an invalid categup parameter to index.php, which calls the phpinfo function.    7.8  High  2017-01-03  2009-02-05  View
56050  CVE-2007-3912  checkrestart in debian-goodies before 0.34 allows local users to gain privileges via shell metacharacters in the name of the executable file for a running process.    7.2  High  2017-01-07  2009-02-05  View
47606  CVE-2009-0272  Cross-site request forgery (CSRF) vulnerability in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allows remote attackers to insert e-mail forwarding rules, and modify unspecified other configuration settings, as arbitrary users via unknown vectors.    6.8  Medium  2017-01-07  2009-02-05  View
47607  CVE-2009-0273  Multiple cross-site scripting (XSS) vulnerabilities in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allow remote attackers to inject arbitrary web script or HTML via the (1) User.id and (2) Library.queryText parameters to gw/webacc, and other vectors involving (3) HTML e-mail and (4) HTML attachments.    4.3  Medium  2017-01-07  2009-02-05  View
4603  CVE-2008-4789  The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error."    Medium  2017-01-03  2009-02-05  View

Page 14950 of 17672, showing 5 records out of 88360 total, starting on record 74746, ending on 74750

Actions