NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4815 | CVE-2008-5028 | Cross-site request forgery (CSRF) vulnerability in cmd.cgi in (1) Nagios 3.0.5 and (2) op5 Monitor before 4.0.1 allows remote attackers to send commands to the Nagios process, and trigger execution of arbitrary programs by this process, via unspecified HTTP requests. | 2 | 6.8 | Medium | 2017-01-03 | 2016-12-07 | View | |
5583 | CVE-2008-5852 | Emefa Guestbook 3.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for guestbook.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
71119 | CVE-2004-0692 | The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed image file that triggers a null dereference, a different vulnerability than CVE-2004-0693. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
5839 | CVE-2008-6108 | Cross-site scripting (XSS) vulnerability in result.php in Galatolo WebManager (GWM) 1.0 allows remote attackers to inject arbitrary web script or HTML via the key parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-11 | View | |
6351 | CVE-2008-6620 | Multiple cross-site scripting (XSS) vulnerabilities in javascript/editor/editor/filemanager/browser/mcpuk/connectors/php/connector.php in GraFX miniCWB 2.1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) errcontext, (2) _GET, (3) _POST, (4) _SESSION, (5) _SERVER, and (6) fckphp_config[Debug_SERVER] parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 15931 of 17672, showing 5 records out of 88360 total, starting on record 79651, ending on 79655