NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 225 | CVE-2008-0240 | /idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection." | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 65761 | CVE-2006-7218 | eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy. | 2 | 4 | Medium | 2016-12-20 | 2015-07-28 | View | |
| 481 | CVE-2008-0506 | include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing method is configured, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) quality, (2) angle, or (3) clipval parameter to picEditor.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-11 | View | |
| 66017 | CVE-2005-0253 | Directory traversal vulnerability in index.php for BibORB 1.3.2, and possibly earlier versions, allows remote attackers to delete arbitrary files via a Delete action and .. (dot dot) sequences in the database_name parameter. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 737 | CVE-2008-0766 | Stack-based buffer overflow in RpmSrvc.exe in Brooks Remote Print Manager (RPM) 4.5.1.11 and earlier (Elite and Select) for Windows allows remote attackers to execute arbitrary code via a long filename in a "Receive data file" LPD command. NOTE: some of these details are obtained from third party information. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View |
Page 15214 of 17672, showing 5 records out of 88360 total, starting on record 76066, ending on 76070