NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3239  CVE-2008-3358  Cross-site scripting (XSS) vulnerability in Web Dynpro (WD) in the SAP NetWeaver portal, when Internet Explorer 7.0.5730 is used, allows remote attackers to inject arbitrary web script or HTML via a crafted URI, which causes the XSS payload to be reflected in a text/plain document.    4.3  Medium  2017-01-03  2011-03-07  View
68775  CVE-2005-3112  The "reset password" feature in Macromedia Breeze 5.0 stores passwords in plaintext in the database instead of the hash, which allows attackers with access to the database to obtain the passwords.    2.1  Low  2017-01-03  2008-09-05  View
3495  CVE-2008-3626  The CallComponentFunctionWithStorage function in Apple QuickTime before 7.5.5 does not properly handle a large entry in the sample_size_table in STSZ atoms, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.    6.8  Medium  2017-01-03  2013-11-02  View
3751  CVE-2008-3889  Postfix 2.4 before 2.4.9, 2.5 before 2.5.5, and 2.6 before 2.6-20080902, when used with the Linux 2.6 kernel, leaks epoll file descriptors during execution of "non-Postfix" commands, which allows local users to cause a denial of service (application slowdown or exit) via a crafted command, as demonstrated by a command in a .forward file.    2.1  Low  2017-01-03  2012-03-19  View
69287  CVE-2005-3649  jumpto.php in Moodle 1.5.2 allows remote attackers to redirect users to other sites via the jump parameter.    2.6  Low  2017-01-03  2016-10-17  View

Page 15383 of 17672, showing 5 records out of 88360 total, starting on record 76911, ending on 76915

Actions