NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3206  CVE-2008-3325  Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attackers to modify profile settings and gain privileges as other users via a link or IMG tag to the user edit profile page.    Medium  2017-01-03  2009-02-17  View
68742  CVE-2005-3079  PunBB before 1.2.8 allows remote attackers to perform "code inclusion" via the user language selection.    4.6  Medium  2017-01-03  2008-09-05  View
3462  CVE-2008-3592  Unrestricted file upload vulnerability in the File Manager in the admin panel in Twentyone Degrees Symphony 1.7.01 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension to a directory specified in the destination parameter, then accessing the uploaded file via a direct request, as demonstrated using workspace/masters/.    8.5  High  2017-01-03  2009-01-29  View
68998  CVE-2005-3336  SQL injection vulnerability in Mantis 1.0.0RC2 and 0.19.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.    7.5  High  2017-01-03  2011-03-07  View
3718  CVE-2008-3856  The routine infrastructure component in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP1 on Unix and Linux does not change the ownership of the db2fmp process, which has unknown impact and attack vectors.    7.5  High  2017-01-03  2009-08-12  View

Page 15091 of 17672, showing 5 records out of 88360 total, starting on record 75451, ending on 75455

Actions