NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5179  CVE-2008-5406  Stack-based buffer overflow in Apple QuickTime Player 7.5.5 and iTunes 8.0.2.20 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a MOV file with "long arguments," related to an "off by one overflow."    9.3  High  2017-01-03  2009-01-29  View
3644  CVE-2008-3779  Cross-site scripting (XSS) vulnerability in search/index.php in Five Star Review Script allows remote attackers to inject arbitrary web script or HTML via the words parameter in a search action.    4.3  Medium  2017-01-03  2009-01-29  View
3645  CVE-2008-3780  SQL injection vulnerability in recommend.php in Five Star Review Script allows remote attackers to execute arbitrary SQL commands via the item_id parameter.    7.5  High  2017-01-03  2009-01-29  View
3901  CVE-2008-4043  Multiple SQL injection vulnerabilities in AJ Square AJ HYIP Acme allow remote attackers to execute arbitrary SQL commands via the artid parameter to (1) acme/article/comment.php and (2) prime/article/comment.php.    7.5  High  2017-01-03  2009-01-29  View
5437  CVE-2008-5695  wp-admin/options.php in WordPress MU before 1.3.2, and WordPress 2.3.2 and earlier, does not properly validate requests to update an option, which allows remote authenticated users with manage_options and upload_files capabilities to execute arbitrary code by uploading a PHP script and adding this script"s pathname to active_plugins.    8.5  High  2017-01-03  2009-01-29  View

Page 14987 of 17672, showing 5 records out of 88360 total, starting on record 74931, ending on 74935

Actions