NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71386  CVE-2004-0984  Unknown vulnerability in the dotlock implementation in mailutils before 1:0.5-4 on Debian GNU/Linux allows attackers to gain privileges.    7.2  High  2016-12-20  2008-09-10  View
6106  CVE-2008-6375  JBook stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to userids.mdb.    Medium  2017-01-03  2009-07-22  View
6362  CVE-2008-6631  Multiple cross-site scripting (XSS) vulnerabilities in index.php in BlogPHP 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) user parameter in a sendmessage action and the (2) username parameter when registering a new user, different vectors than CVE-2008-0679.    4.3  Medium  2017-01-03  2009-08-19  View
6618  CVE-2008-6887  SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the siteid parameter.    7.5  High  2017-01-03  2009-08-03  View
6874  CVE-2008-7143  phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header.    6.8  Medium  2017-01-03  2009-09-09  View

Page 15377 of 17672, showing 5 records out of 88360 total, starting on record 76881, ending on 76885

Actions