NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
976  CVE-2008-1014  Apple QuickTime before 7.4.5 does not properly handle external URLs in movies, which allows remote attackers to obtain sensitive information.    4.3  Medium  2017-01-03  2011-03-07  View
66512  CVE-2005-0762  Heap-based buffer overflow in the SGI parser in ImageMagick before 6.0 allows remote attackers to execute arbitrary code via a crafted SGI image file.    7.5  High  2017-01-03  2010-08-21  View
1232  CVE-2008-1273  Multiple cross-site scripting (XSS) vulnerabilities in imageVue 1.7 allow remote attackers to inject arbitrary web script or HTML via the path parameter to (1) popup.php, (2) test/dir2.php, (3) admin/upload.php, and (4) dirxml.php in upload/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-09-05  View
1488  CVE-2008-1544  The setRequestHeader method of the XMLHttpRequest object in Microsoft Internet Explorer 5.01, 6, and 7 does not block dangerous HTTP request headers when certain 8-bit character sequences are appended to a header name, which allows remote attackers to (1) conduct HTTP request splitting and HTTP request smuggling attacks via an incorrect Content-Length header, (2) access arbitrary virtual hosts via a modified Host header, (3) bypass referrer restrictions via an incorrect Referer header, and (4) bypass the same-origin policy and obtain sensitive information via a crafted request header.    7.1  High  2017-01-03  2011-06-14  View
67024  CVE-2005-1285  Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the hilight parameter.    6.8  Medium  2017-01-03  2016-10-17  View

Page 15742 of 17672, showing 5 records out of 88360 total, starting on record 78706, ending on 78710

Actions