NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5090 | CVE-2008-5312 | mailscanner 4.55.10 and other versions before 4.74.16-1 might allow local users to overwrite arbitrary files via a symlink attack on certain temporary files used by the (1) f-prot-autoupdate, (2) clamav-autoupdate, (3) panda-autoupdate.new, (4) trend-autoupdate.new, and (5) rav-autoupdate.new scripts in /etc/MailScanner/autoupdate/, a different vulnerability than CVE-2008-5140. | 2 | 6.9 | Medium | 2017-01-03 | 2010-12-28 | View | |
70626 | CVE-2004-0169 | QuickTime Streaming Server in MacOS X 10.2.8 and 10.3.2 allows remote attackers to cause a denial of service (crash) via DESCRIBE requests with long User-Agent fields, which causes an Assert error to be triggered in the BufferIsFull function. | 2 | 5 | Medium | 2016-12-20 | 2008-09-10 | View | |
5346 | CVE-2008-5597 | Cold BBS stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for db/cforum.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
5602 | CVE-2008-5871 | Nortel Multimedia Communication Server (MSC) 5100 3.0.13 does not verify credentials during call placement, which allows remote attackers to spoof and redirect VoIP calls, possibly related to the snoop command. | 2 | 6.4 | Medium | 2017-01-03 | 2011-03-07 | View | |
5858 | CVE-2008-6127 | Multiple cross-site scripting (XSS) vulnerabilities in moziloCMS 1.10.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) page and (2) query parameters to (a) index.php, (3) cat and (4) file parameters to (b) download.php, (5) gal parameter to gallery.php, and the (6) URL to admin/login.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 16611 of 17672, showing 5 records out of 88360 total, starting on record 83051, ending on 83055