NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6113  CVE-2008-6382  ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to ASPPortal.mdb.    Medium  2017-01-03  2009-03-03  View
71649  CVE-2004-1269  lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail.    Medium  2017-07-18  2017-07-10  View
6625  CVE-2008-6894  Multiple cross-site scripting (XSS) vulnerabilities in login.php in 3CX Phone System Free Edition 6.1793 and 6.0.806.0 allow remote attackers to inject arbitrary web script or HTML via the (1) fName and (2) fPassword parameters.    4.3  Medium  2017-01-03  2013-07-20  View
6881  CVE-2008-7150  Cross-site scripting (XSS) vulnerability in Refine by Taxonomy 5.x before 5.x-0.1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a taxonomy term, which is not properly handled by refine_by_taxo when displaying tags.    4.3  Medium  2017-01-03  2009-09-03  View
72417  CVE-2004-2040  Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script or HTML via the (1) LAN_407 parameter to clock_menu.php, (2) "email article to a friend" field, (3) "submit news" field, or (4) avmsg parameter to usersettings.php.    4.3  Medium  2017-07-18  2017-07-10  View

Page 16574 of 17672, showing 5 records out of 88360 total, starting on record 82866, ending on 82870

Actions