NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4625  CVE-2008-4811  The _expand_quoted_text function in libs/Smarty_Compiler.class.php in Smarty 2.6.20 r2797 and earlier allows remote attackers to execute arbitrary PHP code via vectors related to templates and a (backslash) before a dollar-sign character.    7.5  High  2017-01-03  2009-07-01  View
4624  CVE-2008-4810  The _expand_quoted_text function in libs/Smarty_Compiler.class.php in Smarty 2.6.20 before r2797 allows remote attackers to execute arbitrary PHP code via vectors related to templates and (1) a dollar-sign character, aka "php executed in templates;" and (2) a double quoted literal string, aka a "function injection security hole." NOTE: each vector affects slightly different SVN revisions.    7.5  High  2017-01-03  2009-07-01  View
4623  CVE-2008-4809  Multiple unspecified vulnerabilities in the Profiles search pages in IBM Lotus Connections 2.x before 2.0.1 have unknown impact and attack vectors related to "Active" content. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    10  High  2017-01-03  2008-11-03  View
4622  CVE-2008-4808  IBM Lotus Connections 2.x before 2.0.1 allows attackers to discover passwords via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    Medium  2017-01-03  2008-11-03  View
4621  CVE-2008-4807  IBM Lotus Connections 2.x before 2.0.1 stores the password for the administrative user in the trace.log file, which allows local users to obtain sensitive information by reading this file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    2.1  Low  2017-01-03  2008-11-03  View

Page 16748 of 17672, showing 5 records out of 88360 total, starting on record 83736, ending on 83740

Actions