NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6090  CVE-2008-6359  Cross-site scripting (XSS) vulnerability in index.php in Max"s Guestbook allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, and (3) message parameters.    4.3  Medium  2017-01-03  2009-07-22  View
6346  CVE-2008-6615  SQL injection vulnerability in index.php in Zen Software Zen Cart 2008 allows remote attackers to execute arbitrary SQL commands via the keyword parameter in the advanced_search_result page. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2009-04-07  View
6602  CVE-2008-6871  Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers to obtain unspecified sensitive information via a direct request.    Medium  2017-01-03  2009-07-24  View
6858  CVE-2008-7127  osagent.exe in Borland VisiBroker Smart Agent 08.00.00.C1.03 and earlier allows remote attackers to cause a denial of service (crash) via a crafted packet with a large string length value to UDP port 14000, which triggers a memory allocation failure that is not properly handled.    Medium  2017-01-03  2009-08-31  View
73674  CVE-2003-0550  The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient security by design, which allows attackers to modify the bridge topology.    Medium  2017-01-03  2008-09-10  View

Page 15697 of 17672, showing 5 records out of 88360 total, starting on record 78481, ending on 78485

Actions