NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3541 | CVE-2008-3674 | SQL injection vulnerability in ugroups.php in PozScripts TubeGuru Video Sharing Script allows remote attackers to execute arbitrary SQL commands via the UID parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
69077 | CVE-2005-3416 | phpBB 2.0.17 and earlier, when register_globals is enabled and the session_start function has not been called to handle a session, allows remote attackers to bypass security checks by setting the $_SESSION and $HTTP_SESSION_VARS variables to strings instead of arrays, which causes an array_merge function call to fail. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
3797 | CVE-2008-3935 | Cross-site scripting (XSS) vulnerability in DIC shop_v50 3.0 and earlier and shop_v52 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
69333 | CVE-2005-3695 | Cross-site scripting (XSS) vulnerability in admin/config/confMgr.php in LiteSpeed Web Server 2.1.5 allows remote attackers to inject arbitrary web script or HTML via the m parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4053 | CVE-2008-4197 | Opera before 9.52 on Windows, Linux, FreeBSD, and Solaris, when processing custom shortcut and menu commands, can produce argument strings that contain uninitialized memory, which might allow user-assisted remote attackers to execute arbitrary code or conduct other attacks via vectors related to activation of a shortcut. | 2 | 9.3 | High | 2017-01-03 | 2009-09-01 | View |
Page 15788 of 17672, showing 5 records out of 88360 total, starting on record 78936, ending on 78940