NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3298  CVE-2008-3417  SQL injection vulnerability in home/index.asp in fipsCMS light 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the r parameter, a different vector than CVE-2006-6115 and CVE-2007-2561.    7.5  High  2017-01-03  2009-08-19  View
68834  CVE-2005-3172  The WideCharToMultiByte function in Microsoft Windows 2000 before Update Rollup 1 for SP4 does not properly convert strings with Japanese composite characters in the last character, which could prevent the string from being null terminated and lead to data corruption or enable buffer overflow attacks.    Medium  2017-01-03  2008-09-05  View
3554  CVE-2008-3687  Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall.    6.8  Medium  2017-01-03  2011-03-07  View
69090  CVE-2005-3429  Rockliffe MailSite Express before 6.1.22, with the option to save login information enabled, saves user passwords in plaintext in cookies, which allows local users to obtain passwords by reading the cookie file, or remote attackers to obtain the cookies via cross-site scripting (XSS) vulnerabilities.    4.3  Medium  2017-07-18  2017-07-10  View
3810  CVE-2008-3948  SQL injection vulnerability in admin/users/self-2.php in XRMS allows remote attackers to execute arbitrary SQL commands and modify name and email fields via unspecified vectors.    7.5  High  2017-01-03  2009-01-29  View

Page 15638 of 17672, showing 5 records out of 88360 total, starting on record 78186, ending on 78190

Actions