NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
244 | CVE-2008-0259 | Multiple directory traversal vulnerabilities in _mg/php/mg_thumbs.php in minimal Gallery 0.8 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) thumbcat and (2) thumb parameters. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-05 | View | |
1012 | CVE-2008-1051 | PHP remote file inclusion vulnerability in include/body_comm.inc.php in phpProfiles 4.5.2 BETA allows remote attackers to execute arbitrary PHP code via a URL in the content parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
67060 | CVE-2005-1321 | Cross-site scripting (XSS) vulnerability in Horde Vacation module before 2.2.2 allows remote attackers to inject arbitrary web script or HTML via the parent"s frame page title. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
2804 | CVE-2008-2910 | Buffer overflow in the DXTTextOutEffect ActiveX control (aka the Text-Effect DXT Filter), as distributed in TextOut.dll 6.0.18.1 and mvtextout.dll, in muvee autoProducer 6.0 and 6.1 allows remote attackers to execute arbitrary code via a long FontSetting property value. | 2 | 9.3 | High | 2017-01-03 | 2008-09-05 | View | |
3316 | CVE-2008-3435 | LinkedIn Browser Toolbar 3.0.3.1100 and earlier does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1593 of 17672, showing 5 records out of 88360 total, starting on record 7961, ending on 7965