NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1817  CVE-2008-1877  tss 0.8.1 allows local users to read arbitrary files via the -a parameter, which is processed while tss is running with privileges.    2.1  Low  2017-01-03  2008-09-05  View
2073  CVE-2008-2139  The rootpw plugin in rPath Appliance Platform Agent 2 and 3 does not re-validate requests from a browser with a valid administrator session, including requests to change the password, which makes it easier for physically proximate attackers to gain privileges and maintain control over the administrator account.    6.5  Medium  2017-01-03  2008-09-05  View
2329  CVE-2008-2413  Cross-site scripting (XSS) vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.    4.3  Medium  2017-01-03  2008-09-05  View
68377  CVE-2005-2688  Multiple cross-site scripting (XSS) vulnerabilities in SaveWebPortal 3.4 allow remote attackers to inject arbitrary web script or HTML via a large number of parameters to (1) footer.php, (2) header.php, (3) menu_dx.php, or (4) menu_sx.php, or Javascript code in the (5) HTTP_REFERER (referer) or (6) HTTP_USER_AGENT (user agent) fields.    4.3  Medium  2017-01-03  2008-09-05  View
69401  CVE-2005-3763  Exponent CMS 0.96.3 and later versions includes the full installation path in the base parameter to thumb.php, which allows remote attackers to obtain sensitive information. NOTE: this might be resultant from an absolute path traversal vulnerability.    Medium  2017-01-03  2008-09-05  View

Page 16160 of 17672, showing 5 records out of 88360 total, starting on record 80796, ending on 80800

Actions