NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6039 | CVE-2008-6308 | Multiple directory traversal vulnerabilities in Private Messaging System (PMS) 1.2.3 and earlier for PunBB allow remote attackers to include and execute arbitrary files via a .. (dot dot) in the pun_user[language] parameter to (1) functions_navlinks.php, (2) header_new_messages.php, (3) profile_send.php, and (4) viewtopic_PM-link.php in include/pms/. | 2 | 5.1 | Medium | 2017-01-03 | 2009-08-12 | View | |
| 6295 | CVE-2008-6564 | Nortel UNIStim protocol, as used in Communication Server 1000 and other products, uses predictable sequence numbers, which allows remote attackers to hijack sessions via sniffing or brute force attacks. | 2 | 7.6 | High | 2017-01-03 | 2009-04-18 | View | |
| 6551 | CVE-2008-6820 | The db2fmp process in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 on Windows runs with "OS privilege," which has unknown impact and attack vectors, a different vulnerability than CVE-2008-3856. | 2 | 10 | High | 2017-01-03 | 2009-08-12 | View | |
| 6807 | CVE-2008-7076 | Unrestricted file upload vulnerability in user.modify.profile.php in Kalptaru Infotech Ltd. Star Articles 6.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a profile photo, then accessing it via a direct request to the file in authorphoto/. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-25 | View | |
| 73367 | CVE-2003-0230 | Microsoft SQL Server 7, 2000, and MSDE allows local users to gain privileges by hijacking a named pipe during the authentication of another user, aka the "Named Pipe Hijacking" vulnerability. | 2 | 7.2 | High | 2017-01-03 | 2008-09-10 | View |
Page 15248 of 17672, showing 5 records out of 88360 total, starting on record 76236, ending on 76240