NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1979 | CVE-2008-2044 | includes/library.php in netOffice Dwins 1.3 p2 compares the demoSession variable to the "true" string literal instead of the true boolean literal, which allows remote attackers to bypass authentication and execute arbitrary code by setting this variable to 1, as demonstrated by uploading a PHP script via an add action to projects_site/uploadfile.php. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
| 67515 | CVE-2005-1791 | Microsoft Internet Explorer 6 SP2 (6.0.2900.2180) crashes when the user attempts to add a URI to the restricted zone, in which the full domain name of the URI begins with numeric sequences similar to an IP address. NOTE: if there is not an exploit scenario in which an attacker can trigger this behavior, then perhaps this issue should not be included in CVE. | 2 | 2.6 | Low | 2017-01-03 | 2016-10-17 | View | |
| 2235 | CVE-2008-2314 | Dock in Apple Mac OS X 10.5 before 10.5.4, when Exposé hot corners is enabled, allows physically proximate attackers to gain access to a locked session in (1) sleep mode or (2) screen saver mode via unspecified vectors. | 2 | 4.4 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 2491 | CVE-2008-2585 | Unspecified vulnerability in the Oracle Report Manager component in Oracle E-Business Suite 12.0.4 has unknown impact and remote authenticated attack vectors. | 2 | 6.5 | Medium | 2017-01-03 | 2012-10-22 | View | |
| 68027 | CVE-2005-2326 | Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the yr parameter to calendar.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 15560 of 17672, showing 5 records out of 88360 total, starting on record 77796, ending on 77800