NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3801 | CVE-2008-3939 | Directory traversal vulnerability in the web interface in AVTECH PageR Enterprise before 5.0.7 allows remote attackers to read arbitrary files via directory traversal sequences in the URI. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 69337 | CVE-2005-3699 | Opera Web Browser 8.50 and 8.0 through 8.0.2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4057 | CVE-2008-4201 | Heap-based buffer overflow in the decodeMP4file function (frontend/main.c) in FAAD2 2.6.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MPEG-4 (MP4) file. | 2 | 9.3 | High | 2017-01-03 | 2011-01-03 | View | |
| 69593 | CVE-2005-3955 | Multiple cross-site scripting (XSS) vulnerabilities in MagpieRSS 7.1, as used in (a) blogBuddiesv 0.3, (b) Jaws 0.6.2, and possibly other products, allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (2) rss_url parameter to (b) magpie_slashbox.php and (c) simple_smarty.php. | 2 | 4.3 | Medium | 2017-01-03 | 2015-06-30 | View | |
| 4313 | CVE-2008-4490 | Directory traversal vulnerability in config.inc.php in phpAbook 0.8.8b and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the userInfo cookie. | 2 | 5.1 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 15313 of 17672, showing 5 records out of 88360 total, starting on record 76561, ending on 76565