NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66412 | CVE-2005-0661 | SQL injection vulnerability in the getwbbuserdata function in session.php for Woltlab Burning Board 2.0.3 through 2.3.0 allows remote attackers to execute arbitrary SQL commands via the (1) userid or (2) lastvisit cookie. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1132 | CVE-2008-1172 | Cross-site request forgery (CSRF) vulnerabilities in account-inbox.php in TorrentTrader Classic 1.08 allow remote attackers to perform certain actions as other users, as demonstrated by sending messages. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
66668 | CVE-2005-0918 | The NPSVG3.dll ActiveX control for Adobe SVG Viewer 3.02 and earlier, when running on Internet Explorer, allows remote attackers to determine the existence of arbitrary files by setting the src property to the target filename and using Javascript to determine if the web page immediately stops loading, which indicates whether the file exists or not. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
1900 | CVE-2008-1964 | ** DISPUTED ** Stack-based buffer overflow in the demux_nsf_send_headers function in src/demuxers/demux_nsf.c in xine-lib allows remote attackers to have an unknown impact via a long copyright field in an NSF header in an NES Sound file, a different issue than CVE-2008-1878. NOTE: a third party claims that the copyright field always has a safe length. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
67436 | CVE-2005-1711 | Gibraltar Firewall 2.2 and earlier, when using the ClamAV update to 0.81 for Squid, uses a defunct ClamAV method to scan memory for viruses, which does not return an error code and prevents viruses from being detected. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16679 of 17672, showing 5 records out of 88360 total, starting on record 83391, ending on 83395