NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1817 | CVE-2008-1877 | tss 0.8.1 allows local users to read arbitrary files via the -a parameter, which is processed while tss is running with privileges. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
2073 | CVE-2008-2139 | The rootpw plugin in rPath Appliance Platform Agent 2 and 3 does not re-validate requests from a browser with a valid administrator session, including requests to change the password, which makes it easier for physically proximate attackers to gain privileges and maintain control over the administrator account. | 2 | 6.5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2329 | CVE-2008-2413 | Cross-site scripting (XSS) vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
68377 | CVE-2005-2688 | Multiple cross-site scripting (XSS) vulnerabilities in SaveWebPortal 3.4 allow remote attackers to inject arbitrary web script or HTML via a large number of parameters to (1) footer.php, (2) header.php, (3) menu_dx.php, or (4) menu_sx.php, or Javascript code in the (5) HTTP_REFERER (referer) or (6) HTTP_USER_AGENT (user agent) fields. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
69401 | CVE-2005-3763 | Exponent CMS 0.96.3 and later versions includes the full installation path in the base parameter to thumb.php, which allows remote attackers to obtain sensitive information. NOTE: this might be resultant from an absolute path traversal vulnerability. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 16160 of 17672, showing 5 records out of 88360 total, starting on record 80796, ending on 80800