NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2247 | CVE-2008-2327 | Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, and (3) LZWDecodeVector functions in tif_lzw.c in the LZW decoder in LibTIFF 3.8.2 and earlier allow context-dependent attackers to execute arbitrary code via a crafted TIFF file, related to improper handling of the CODE_CLEAR code. | 2 | 6.8 | Medium | 2017-01-03 | 2012-10-30 | View | |
| 67783 | CVE-2005-2074 | Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.0.105 allows remote attackers to inject arbitrary web script or HTML via a news or article post, possibly involving the (1) news_body, (2) article_description, or (3) article_body parameters to submit.php. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 68039 | CVE-2005-2338 | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.0.12 JP and earlier, XOOPS 2.0.13.1 and earlier, and 2.2.x up to 2.2.3 RC1 allow remote attackers to inject arbitrary web script or HTML via (1) modules that use "XOOPS Code" and (2) newbb in the forum module. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 3015 | CVE-2008-3131 | SQL injection vulnerability in chatbox.php in pSys 0.7.0 Alpha, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the showid parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-20 | View | |
| 3271 | CVE-2008-3390 | Directory traversal vulnerability in libraries/general.init.php in Minishowcase Image Gallery 09b136, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 15648 of 17672, showing 5 records out of 88360 total, starting on record 78236, ending on 78240