NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2578 | CVE-2008-2680 | Multiple cross-site scripting (XSS) vulnerabilities in _db/compact.asp in Realm CMS 2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) CmpctedDB and (2) Boyut parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-10 | View | |
2834 | CVE-2008-2940 | The alert-mailing implementation in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to gain privileges and send e-mail messages from the root account via vectors related to the setalerts message, and lack of validation of the device URI associated with an event message. | 2 | 7.2 | High | 2017-01-03 | 2012-10-30 | View | |
3090 | CVE-2008-3207 | PHP remote file inclusion vulnerability in cms/modules/form.lib.php in Pragyan CMS 2.6.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the (1) sourceFolder or (2) moduleFolder parameter. | 2 | 9.3 | High | 2017-01-03 | 2009-01-29 | View | |
68626 | CVE-2005-2962 | The post-installation script for ntlmaps before 0.9.9 sets world-readable permissions for the configuration file, which allows local users to obtain the username and password. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
3346 | CVE-2008-3472 | Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attackers to bypass the intended cross-domain security policy, and execute arbitrary code or obtain sensitive information, via a crafted HTML document, aka "HTML Element Cross-Domain Vulnerability." | 2 | 9.3 | High | 2017-01-03 | 2012-01-26 | View |
Page 1667 of 17672, showing 5 records out of 88360 total, starting on record 8331, ending on 8335