NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6128 | CVE-2008-6397 | rlatex in AlcoveBook sgml2x 1.0.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files. | 2 | 4.4 | Medium | 2017-01-03 | 2009-03-05 | View | |
6384 | CVE-2008-6653 | SQL injection vulnerability in webhosting.php in the Webhosting Component (com_webhosting) module before 1.1 RC7 for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
6640 | CVE-2008-6909 | Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not sign all required data in requests, which has unspecified impact, probably related to man-in-the-middle attacks that modify critical data and allow remote attackers to impersonate other users and gain privileges. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-19 | View | |
6896 | CVE-2008-7165 | Cross-site request forgery in cp06_wifi_m_nocifr.cgi in the administrator panel in TELECOM ITALIA Alice Gate2 Plus Wi-Fi allows remote attackers to hijack the authentication of administrators for requests that disable Wi-Fi encryption via certain values for the wlChannel and wlRadioEnable parameters. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-09 | View | |
7152 | CVE-2011-0013 | Multiple cross-site scripting (XSS) vulnerabilities in the HTML Manager Interface in Apache Tomcat 5.5 before 5.5.32, 6.0 before 6.0.30, and 7.0 before 7.0.6 allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the display-name tag. | 2 | 4.3 | Medium | 2017-01-07 | 2016-08-22 | View |
Page 16715 of 17672, showing 5 records out of 88360 total, starting on record 83571, ending on 83575