NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3721  CVE-2008-3859  Davlin Thickbox Gallery 2 allows remote attackers to obtain the administrative username and MD5 password hash via a direct request to conf/admins.php.    Medium  2017-01-03  2009-03-13  View
69257  CVE-2005-3619  Cross-site scripting (XSS) vulnerability in the management interface for VMware ESX 2.5.x before 2.5.2 upgrade patch 2, 2.1.x before 2.1.2 upgrade patch 6, and 2.0.x before 2.0.1 upgrade patch 6 allows remote attackers to inject arbitrary web script or HTML via messages that are not sanitized when viewing syslog log files.    6.8  Medium  2017-01-03  2008-09-05  View
3977  CVE-2008-4119  Multiple cross-site scripting (XSS) vulnerabilities in CA Service Desk 11.2 and CMDB 11.0 through 11.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "multiple web forms."    4.3  Medium  2017-01-03  2012-10-29  View
69513  CVE-2005-3875  Multiple SQL injection vulnerabilities in Enterprise Connector 1.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the messageid parameter in (1) send.php or (2) a delete action in messages.php.    7.5  High  2017-01-03  2011-03-07  View
4233  CVE-2008-4407  XRunSabre in sabre (aka xsabre) 0.2.4b relies on the ability to create /tmp/sabre.log, which allows local users to cause a denial of service (application unavailability) by creating a /tmp/sabre.log file that cannot be overwritten.    2.1  Low  2017-01-03  2008-11-15  View

Page 15120 of 17672, showing 5 records out of 88360 total, starting on record 75596, ending on 75600

Actions