NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3298 | CVE-2008-3417 | SQL injection vulnerability in home/index.asp in fipsCMS light 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the r parameter, a different vector than CVE-2006-6115 and CVE-2007-2561. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
| 68834 | CVE-2005-3172 | The WideCharToMultiByte function in Microsoft Windows 2000 before Update Rollup 1 for SP4 does not properly convert strings with Japanese composite characters in the last character, which could prevent the string from being null terminated and lead to data corruption or enable buffer overflow attacks. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 3554 | CVE-2008-3687 | Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 69090 | CVE-2005-3429 | Rockliffe MailSite Express before 6.1.22, with the option to save login information enabled, saves user passwords in plaintext in cookies, which allows local users to obtain passwords by reading the cookie file, or remote attackers to obtain the cookies via cross-site scripting (XSS) vulnerabilities. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 3810 | CVE-2008-3948 | SQL injection vulnerability in admin/users/self-2.php in XRMS allows remote attackers to execute arbitrary SQL commands and modify name and email fields via unspecified vectors. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View |
Page 15638 of 17672, showing 5 records out of 88360 total, starting on record 78186, ending on 78190