NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2767  CVE-2008-2873  sHibby sHop 2.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request to Db/urun.mdb.    Medium  2017-01-03  2008-09-05  View
3023  CVE-2008-3139  The RTMPT dissector in Wireshark (formerly Ethereal) 0.99.8 through 1.0.0 allows remote attackers to cause a denial of service (crash) via unknown vectors. NOTE: this might be due to a use-after-free error.    Medium  2017-01-03  2012-09-12  View
68559  CVE-2005-2884  Cross-site scripting (XSS) vulnerability in events.php in Land Down Under (LDU) 801 and earlier allows remote attackers to inject arbitrary web script or HTML via the Description field in an event.    4.3  Medium  2017-07-18  2017-07-10  View
3535  CVE-2008-3668  Multiple cross-site scripting (XSS) vulnerabilities in the Yogurt Social Network module 3.2 rc1 for XOOPS allow remote attackers to inject arbitrary web script or HTML via the uid parameter to (1) friends.php, (2) seutubo.php, (3) album.php, (4) scrapbook.php, (5) index.php, or (6) tribes.php; or (7) the description field of a new scrap.    4.3  Medium  2017-01-03  2008-09-05  View
69071  CVE-2005-3409  OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.    Medium  2017-01-03  2008-09-05  View

Page 15929 of 17672, showing 5 records out of 88360 total, starting on record 79641, ending on 79645

Actions