NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2569  CVE-2008-2671  SQL injection vulnerability in comments.php in DCFM Blog 0.9.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-01-29  View
2825  CVE-2008-2931  The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the CAP_SYS_ADMIN capability, which allows local users to gain privileges or cause a denial of service by modifying the properties of a mountpoint.    6.9  Medium  2017-01-03  2012-11-26  View
68361  CVE-2005-2672  pwmconfig in LM_sensors before 2.9.1 creates temporary files insecurely, which allows local users to overwrite arbitrary files via a symlink attack on the fancontrol temporary file.    2.1  Low  2017-01-03  2011-03-07  View
3081  CVE-2008-3198  Mozilla Firefox 3.x before 3.0.1 allows remote attackers to inject arbitrary web script into a chrome document via unspecified vectors, as demonstrated by injection into a XUL error page. NOTE: this can be leveraged to execute arbitrary code using CVE-2008-2933.    7.5  High  2017-01-03  2008-09-10  View
68617  CVE-2005-2953  Cross-site scripting (XSS) vulnerability in merchant.mvc in MIVA Merchant 5 allows remote attackers to inject arbitrary web script or HTML via the Customer_Login parameter.    4.3  Medium  2017-01-03  2016-10-17  View

Page 1586 of 17672, showing 5 records out of 88360 total, starting on record 7926, ending on 7930

Actions