NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6774  CVE-2008-7043  Cross-site scripting (XSS) vulnerability in register.php in FreshScripts Fresh Email Script 1.0 through 1.11 allows remote attackers to inject arbitrary web script or HTML via the Email parameter. NOTE: this can be leveraged to modify cookies and conduct session fixation attacks.    4.3  Medium  2017-01-03  2009-08-24  View
7030  CVE-2008-7309  Insoshi before 20080920 does not properly restrict the use of a hash to provide values for a model"s attributes, which allows remote attackers to set the ForumPost user_id value via a modified URL, related to a "mass assignment" vulnerability.    Medium  2017-01-03  2012-04-12  View
73334  CVE-2003-0194  tcpdump does not properly drop privileges to the pcap user when starting up.    4.6  Medium  2017-01-03  2008-09-05  View
73590  CVE-2003-0463  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.        2017-01-03  2008-09-10  View
73846  CVE-2003-0740  Stunnel 4.00, and 3.24 and earlier, leaks a privileged file descriptor returned by listen(), which allows local users to hijack the Stunnel server.    4.6  Medium  2017-01-03  2016-10-17  View

Page 14951 of 17672, showing 5 records out of 88360 total, starting on record 74751, ending on 74755

Actions