NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5586  CVE-2008-5855  myPHPscripts Login Session 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to discover usernames, e-mail addresses, and password hashes via a direct request for users.txt.    Medium  2017-01-03  2009-01-29  View
71890  CVE-2004-1511  Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute arbitrary code via a certain link sent in a chat window.    Medium  2017-07-18  2017-07-10  View
6610  CVE-2008-6879  Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action.    4.3  Medium  2017-01-03  2009-07-31  View
6866  CVE-2008-7135  toolbaru.dll in ICQ Toolbar (ICQToolbar) 2.3 allows remote attackers to cause a denial of service (toolbar crash) via a long argument to the IsChecked method, a different vector than CVE-2008-7136.    4.3  Medium  2017-01-03  2009-09-01  View
7122  CVE-2017-5475  comment.php in Serendipity through 2.0.5 allows CSRF in deleting any comments.    6.8  Medium  2017-01-30  2017-01-25  View

Page 16040 of 17672, showing 5 records out of 88360 total, starting on record 80196, ending on 80200

Actions