NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4843  CVE-2008-5056  Cross-site scripting (XSS) vulnerability in department_offline_context.php in ActiveCampaign TrioLive before 1.58.7 allows remote attackers to inject arbitrary web script or HTML via the department_id parameter to index.php.    4.3  Medium  2017-01-03  2012-10-30  View
70379  CVE-2005-4790  Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam. NOTE: in August 2007, the tomboy vector was reported for other distributions.    6.9  Medium  2017-01-03  2010-11-11  View
5099  CVE-2008-5321  SQL injection vulnerability in index.php in GesGaleri, a module for XOOPS, allows remote attackers to execute arbitrary SQL commands via the no parameter.    7.5  High  2017-01-03  2009-01-29  View
70635  CVE-2004-0179  Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.    5.1  Medium  2016-12-20  2016-10-17  View
5355  CVE-2008-5606  Gazatem QMail Mailing List Manager 1.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for qmail.mdb.    Medium  2017-01-03  2009-05-14  View

Page 16410 of 17672, showing 5 records out of 88360 total, starting on record 82046, ending on 82050

Actions