NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
557  CVE-2008-0582  Cross-zone scripting vulnerability in the Internet Explorer web control in Skype 3.1 through 3.6.0.244 on Windows allows remote attackers to inject arbitrary web script or HTML in the Local Machine Zone via the Full Name field of a reviewer of a business item entry, accessible through (1) the SkypeFind dialog and (2) a skype:?skypefind URI for the skype: URI handler.    4.3  Medium  2017-01-03  2008-09-05  View
66605  CVE-2005-0855  CoolForum 0.8.1 beta and earlier allows remote attackers to obtain sensitive path information via direct requests to (1) entete.php, (2) profile_accueil.php, (3) profile_mdp.php, (4) profile_notify.php, (5) profile_options.php, (6) profile_perso.php, (7) profile_pm.php, or (8) readannonce.php, which leaks the full pathname in a PHP error message.    10  High  2017-01-03  2008-09-05  View
1837  CVE-2008-1900  option_Update.asp in Carbon Communities 2.4 and earlier allows remote attackers to edit arbitrary member information via a modified ID field.    7.5  High  2017-01-03  2008-09-05  View
67373  CVE-2005-1648  Gurgens (GASoft) Ultimate Forum 1.0 stores the db/Genid.dat database file under the web document root with insufficient access control, which allows remote attackers to obtain and decrypt usernames and passwords.    7.5  High  2017-01-03  2008-09-05  View
67629  CVE-2005-1911  The fetchnews NNTP client in leafnode 1.11.2 and earlier can hang while waiting for input that never arrives, which allows remote NNTP servers to cause a denial of service (news loss).    Medium  2017-01-03  2008-09-05  View

Page 16274 of 17672, showing 5 records out of 88360 total, starting on record 81366, ending on 81370

Actions