NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
746  CVE-2008-0775  Cross-site scripting (XSS) vulnerability in sboxDB.php in Simple Machines Forum (SMF) Shoutbox 1.14 through 1.16b allows remote attackers to inject arbitrary web script or HTML via strings to the shoutbox form that start with "&#", contain the desired script, and end with ";".    4.3  Medium  2017-01-03  2009-09-01  View
66282  CVE-2005-0525  The php_next_marker function in image.c for PHP 4.2.2, 4.3.9, 4.3.10 and 5.0.3, as reachable by the getimagesize PHP function, allows remote attackers to cause a denial of service (infinite loop) via a JPEG image with an invalid marker value, which causes a negative length value to be passed to php_stream_seek.    Medium  2017-01-03  2011-03-07  View
1002  CVE-2008-1041  Cross-site scripting (XSS) vulnerability in mwhois.php in Matt Wilson Matt"s Whois (MWhois) allows remote attackers to inject arbitrary web script or HTML via the domain parameter.    4.3  Medium  2017-01-03  2008-09-05  View
1258  CVE-2008-1299  Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine ServiceDesk Plus 7.0.0 Build 7011 for Windows allows remote attackers to inject arbitrary web script or HTML via the searchText parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-09-05  View
1514  CVE-2008-1570  Race condition in the create_lockpath function in policyd-weight 0.1.14 beta-16 allows local users to modify or delete arbitrary files by creating the LOCKPATH directory, then modifying it after the symbolic link check occurs. NOTE: this is due to an incomplete fix for CVE-2008-1569.    6.9  Medium  2017-01-03  2008-12-01  View

Page 16343 of 17672, showing 5 records out of 88360 total, starting on record 81711, ending on 81715

Actions