NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2800 | CVE-2008-2906 | SQL injection vulnerability in lista_anexos.php in WebChamado 1.1 allows remote attackers to execute arbitrary SQL commands via the tsk_id parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-14 | View | |
68336 | CVE-2005-2647 | Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitrary web script or HTML and modify web pages via unknown vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
3056 | CVE-2008-3172 | Opera allows web sites to set cookies for country-specific top-level domains that have DNS A records, such as co.tv, which could allow remote attackers to perform a session fixation attack and hijack a user"s HTTP session, aka "Cross-Site Cooking." | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-10 | View | |
68592 | CVE-2005-2926 | Stack-based buffer overflow in (1) backupsh and (2) authsh in SCO Openserver 5.0.7 allows local users to execute arbitrary code via a long HOME environment variable. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-07 | View | |
3312 | CVE-2008-3431 | The VBoxDrvNtDeviceControl function in VBoxDrv.sys in Sun xVM VirtualBox before 1.6.4 uses the METHOD_NEITHER communication method for IOCTLs and does not properly validate a buffer associated with the Irp object, which allows local users to gain privileges by opening the \.VBoxDrv device and calling DeviceIoControl to send a crafted kernel address. | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View |
Page 16589 of 17672, showing 5 records out of 88360 total, starting on record 82941, ending on 82945