NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2929 | CVE-2008-3039 | SQL injection vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
3185 | CVE-2008-3304 | BilboBlog 0.2.1 allows remote attackers to obtain sensitive information via (1) an enable_cache=false query string to footer.php or (2) a direct request to pagination.php, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
70257 | CVE-2005-4668 | The embedded HSQLDB in ParosProxy before 3.2.7, when running with JDK 1.4.2 before 1.4.2_08, allows local users to execute arbitrary comands via crafted SQL commands that interact with HSQLDB through JDBC, a similar vulnerability to CVE-2003-0845. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
70513 | CVE-2004-0044 | Cisco Personal Assistant 1.4(1) and 1.4(2) disables password authentication when "Allow Only Cisco CallManager Users" is enabled and the Corporate Directory settings refer to the directory service being used by Cisco CallManager, which allows remote attackers to gain access with a valid username. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
73073 | CVE-2004-2696 | BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, when using Remote Method Invocation (RMI) over Internet Inter-ORB Protocol (IIOP), does not properly handle when multiple logins for different users coming from the same client, which could cause an "unexpected user identity" to be used in an RMI call. | 2 | 5.5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16718 of 17672, showing 5 records out of 88360 total, starting on record 83586, ending on 83590