NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66282 | CVE-2005-0525 | The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
1002 | CVE-2008-1041 | Cross-site scripting (XSS) vulnerability in mwhois.php in Matt Wilson Matt"s Whois (MWhois) allows remote attackers to inject arbitrary web script or HTML via the domain parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1258 | CVE-2008-1299 | Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine ServiceDesk Plus 7.0.0 Build 7011 for Windows allows remote attackers to inject arbitrary web script or HTML via the searchText parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1514 | CVE-2008-1570 | Race condition in the create_lockpath function in policyd-weight 0.1.14 beta-16 allows local users to modify or delete arbitrary files by creating the LOCKPATH directory, then modifying it after the symbolic link check occurs. NOTE: this is due to an incomplete fix for CVE-2008-1569. | 2 | 6.9 | Medium | 2017-01-03 | 2008-12-01 | View | |
67050 | CVE-2005-1311 | Cross-site scripting (XSS) vulnerability in Yappa-NG before 2.3.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 15974 of 17672, showing 5 records out of 88360 total, starting on record 79866, ending on 79870