NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4816 | CVE-2008-5029 | The __scm_destroy function in net/core/scm.c in the Linux kernel 2.6.27.4, 2.6.26, and earlier makes indirect recursive calls to itself through calls to the fput function, which allows local users to cause a denial of service (panic) via vectors related to sending an SCM_RIGHTS message through a UNIX domain socket and closing file descriptors. | 2 | 4.9 | Medium | 2017-01-03 | 2012-11-05 | View | |
70352 | CVE-2005-4763 | BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, 7.0 SP6 and earlier, and 6.1 SP7 and earlier, when Internet Inter-ORB Protocol (IIOP) is used, sometimes include a password in an exception message that is sent to a client or stored in a log file, which might allow remote attackers to perform unauthorized actions. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
5072 | CVE-2008-5294 | SQL injection vulnerability in index.php in WebStudio eCatalogue allows remote attackers to execute arbitrary SQL commands via the pageid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
5328 | CVE-2008-5579 | Absolute path traversal vulnerability in mini-pub.php/front-end/cat.php in mini-pub 0.3 allows remote attackers to read arbitrary files via a full pathname in the sFileName parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
5584 | CVE-2008-5853 | Chilek Content Management System (aka ChiCoMaS) 2.0.4 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) obtain database credentials via a direct request for config.inc or (2) read database backups via a request for a backup/ URI. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 15747 of 17672, showing 5 records out of 88360 total, starting on record 78731, ending on 78735