NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5253 | CVE-2008-5503 | The loadBindingDocument function in Mozilla Firefox 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 does not perform any security checks related to the same-domain policy, which allows remote attackers to read or access data from other domains via crafted XBL bindings. | 2 | 2.6 | Low | 2017-01-03 | 2012-10-30 | View | |
| 5509 | CVE-2008-5769 | Multiple cross-site scripting (XSS) vulnerabilities in Kerio MailServer before 6.6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) folder parameter to mailCompose.php or the (2) daytime parameter to calendarEdit.php. NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-26 | View | |
| 5765 | CVE-2008-6034 | Cross-site scripting (XSS) vulnerability in dispatch.php in Achievo 1.3.2 allows remote attackers to inject arbitrary web script or HTML via the atkaction parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 6021 | CVE-2008-6290 | Directory traversal vulnerability in includefile.php in nicLOR Sito, when register_globals is enabled or magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary files via a .. (dot dot) in the page_file parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-11 | View | |
| 6277 | CVE-2008-6546 | Unspecified vulnerability in phpns before 2.1.3 has unknown impact and attack vectors related to "activation permissions." | 2 | 10 | High | 2017-01-03 | 2009-03-30 | View |
Page 15085 of 17672, showing 5 records out of 88360 total, starting on record 75421, ending on 75425